OTL logfile created on: 2015-09-29 20:58:13 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Magdalena\Downloads 64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.11.10240.16384) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,89 Gb Total Physical Memory | 0,69 Gb Available Physical Memory | 17,70% Memory free 6,65 Gb Paging File | 1,92 Gb Available in Paging File | 28,94% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86) Drive C: | 186,30 Gb Total Space | 137,05 Gb Free Space | 73,56% Space Free | Partition Type: NTFS Drive D: | 258,35 Gb Total Space | 238,39 Gb Free Space | 92,28% Space Free | Partition Type: NTFS Computer Name: LENA | User Name: Magdalena | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 60 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - File not found -- PRC - [2015-09-28 19:37:26 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Magdalena\Downloads\OTL.exe PRC - [2015-09-14 18:01:21 | 000,405,584 | ---- | M] (Microsoft Corporation) -- C:\Users\Magdalena\AppData\Local\Microsoft\OneDrive\OneDrive.exe PRC - [2015-07-13 19:37:02 | 001,253,008 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe PRC - [2015-06-29 21:15:22 | 000,194,000 | ---- | M] (Kaspersky Lab ZAO) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\avp.exe PRC - [2015-06-29 21:15:22 | 000,192,768 | ---- | M] (Kaspersky Lab ZAO) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\avpui.exe PRC - [2015-06-03 23:06:12 | 002,754,704 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe PRC - [2015-06-03 23:06:06 | 001,893,008 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe PRC - [2015-03-23 14:44:48 | 002,998,552 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe PRC - [2014-05-08 11:56:44 | 000,209,720 | ---- | M] (ASUSTek Computer Inc.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe PRC - [2014-05-07 17:41:08 | 000,303,928 | ---- | M] (ASUSTek Computer Inc.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe PRC - [2014-04-02 15:46:10 | 000,058,440 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe PRC - [2014-03-27 14:00:12 | 019,723,888 | ---- | M] (ASUSTek Computer Inc.) -- C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe PRC - [2014-03-26 16:24:44 | 000,115,512 | ---- | M] (ASUSTek Computer Inc.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe PRC - [2014-03-18 12:51:44 | 000,406,328 | ---- | M] (ASUSTek Computer Inc.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe PRC - [2013-12-18 12:37:04 | 000,136,192 | ---- | M] (Clarus, Inc.) -- C:\Program Files (x86)\Clarus\Samsung Drive Manager\ABRTMon.exe PRC - [2013-12-18 12:36:04 | 000,018,432 | ---- | M] (Clarus, Inc.) -- C:\Program Files (x86)\Clarus\Samsung Drive Manager\SZDrvSvc.exe PRC - [2013-12-09 16:27:02 | 000,390,616 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe PRC - [2013-12-09 16:26:24 | 000,169,432 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe PRC - [2013-12-09 16:26:24 | 000,131,544 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe PRC - [2012-05-28 11:04:48 | 000,113,312 | ---- | M] (ASUSTek Computer Inc.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe PRC - [2011-11-21 15:19:50 | 000,096,896 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe PRC - [2011-06-17 13:04:16 | 000,224,096 | ---- | M] () -- C:\ProgramData\Internet Manager\OnlineUpdate\ouc.exe PRC - [2011-03-14 17:27:28 | 000,236,384 | ---- | M] (Huawei Technologies Co., Ltd.) -- C:\ProgramData\DatacardService\DCSHelper.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2015-06-03 23:06:11 | 000,011,920 | ---- | M] () -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll MOD - [2015-02-12 14:08:56 | 000,012,288 | ---- | M] () -- C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe MOD - [2014-04-02 15:46:10 | 000,117,248 | ---- | M] () -- C:\Program Files (x86)\ASUS\Splendid\CCTAdjust.dll MOD - [2014-04-02 15:46:10 | 000,037,936 | ---- | M] () -- C:\Program Files (x86)\ASUS\Splendid\DetectDisplayDC.dll MOD - [2014-04-02 15:46:10 | 000,020,528 | ---- | M] () -- C:\Program Files (x86)\ASUS\Splendid\AMDRegammaAndGamut.dll MOD - [2014-04-02 15:46:10 | 000,018,992 | ---- | M] () -- C:\Program Files (x86)\ASUS\Splendid\AMDColorEnhance.dll MOD - [2013-04-27 10:24:12 | 000,071,680 | ---- | M] () -- C:\Program Files (x86)\ASUS\ASUS Live Update\checkmetro.dll [color=#E56717]========== Services (SafeList) ==========[/color] SRV:[b]64bit:[/b] - [2015-08-13 06:23:47 | 002,178,560 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AppXDeploymentServer.dll -- (AppXSvc) SRV:[b]64bit:[/b] - [2015-08-13 06:22:26 | 002,093,056 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wlidsvc.dll -- (wlidsvc) SRV:[b]64bit:[/b] - [2015-08-11 11:50:47 | 001,643,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\diagtrack.dll -- (DiagTrack) SRV:[b]64bit:[/b] - [2015-08-11 11:21:13 | 000,148,992 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\tetheringservice.dll -- (icssvc) SRV:[b]64bit:[/b] - [2015-08-11 11:07:52 | 000,593,920 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wcmsvc.dll -- (Wcmsvc) SRV:[b]64bit:[/b] - [2015-08-11 11:05:10 | 000,996,352 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\RDXService.dll -- (RetailDemo) SRV:[b]64bit:[/b] - [2015-08-09 14:11:07 | 000,359,056 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Windows\SysNative\igfxCUIService.exe -- (igfxCUIService2.0.0.0) SRV:[b]64bit:[/b] - [2015-08-09 13:12:43 | 000,147,688 | ---- | M] (ELAN Microelectronics Corp.) [Auto | Running] -- C:\Program Files\Elantech\ETDService.exe -- (ETDService) SRV:[b]64bit:[/b] - [2015-08-03 03:24:19 | 000,503,808 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\tileobjserver.dll -- (tiledatamodelsvc) SRV:[b]64bit:[/b] - [2015-07-30 05:44:49 | 000,280,064 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\AudioEndpointBuilder.dll -- (AudioEndpointBuilder) SRV:[b]64bit:[/b] - [2015-07-30 05:44:28 | 000,229,376 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\SensorService.dll -- (SensorService) SRV:[b]64bit:[/b] - [2015-07-30 05:38:27 | 001,420,288 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\UserDataService.dll -- (UserDataSvc) SRV:[b]64bit:[/b] - [2015-07-24 04:34:54 | 000,343,040 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\usocore.dll -- (UsoSvc) SRV:[b]64bit:[/b] - [2015-07-24 04:25:13 | 001,203,200 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\Unistore.dll -- (UnistoreSvc) SRV:[b]64bit:[/b] - [2015-07-22 07:18:56 | 000,808,856 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\CoreMessaging.dll -- (CoreMessagingRegistrar) SRV:[b]64bit:[/b] - [2015-07-19 06:04:10 | 000,658,568 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\ClipSVC.dll -- (ClipSVC) SRV:[b]64bit:[/b] - [2015-07-12 02:25:16 | 001,031,680 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\SensorDataService.exe -- (SensorDataService) SRV:[b]64bit:[/b] - [2015-07-10 13:01:10 | 000,621,056 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AppReadiness.dll -- (AppReadiness) SRV:[b]64bit:[/b] - [2015-07-10 13:01:10 | 000,504,320 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WalletService.dll -- (WalletService) SRV:[b]64bit:[/b] - [2015-07-10 13:01:10 | 000,074,752 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wiarpc.dll -- (WiaRpc) SRV:[b]64bit:[/b] - [2015-07-10 13:00:41 | 000,167,424 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NcaSvc.dll -- (NcaSvc) SRV:[b]64bit:[/b] - [2015-07-10 13:00:38 | 001,844,736 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\workfolderssvc.dll -- (workfolderssvc) SRV:[b]64bit:[/b] - [2015-07-10 13:00:36 | 000,115,200 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService) SRV:[b]64bit:[/b] - [2015-07-10 13:00:20 | 000,749,056 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsm.dll -- (LSM) SRV:[b]64bit:[/b] - [2015-07-10 13:00:16 | 000,075,264 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\NcdAutoSetup.dll -- (NcdAutoSetup) SRV:[b]64bit:[/b] - [2015-07-10 13:00:10 | 000,186,368 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NetSetupSvc.dll -- (NetSetupSvc) SRV:[b]64bit:[/b] - [2015-07-10 13:00:09 | 000,526,336 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\bisrv.dll -- (BrokerInfrastructure) SRV:[b]64bit:[/b] - [2015-07-10 13:00:09 | 000,337,408 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\ncbservice.dll -- (NcbService) SRV:[b]64bit:[/b] - [2015-07-10 13:00:09 | 000,289,280 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\PimIndexMaintenance.dll -- (PimIndexMaintenanceSvc) SRV:[b]64bit:[/b] - [2015-07-10 13:00:09 | 000,049,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wpnservice.dll -- (WpnService) SRV:[b]64bit:[/b] - [2015-07-10 13:00:09 | 000,033,280 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DevQueryBroker.dll -- (DevQueryBroker) SRV:[b]64bit:[/b] - [2015-07-10 13:00:09 | 000,027,136 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\lfsvc.dll -- (lfsvc) SRV:[b]64bit:[/b] - [2015-07-10 13:00:07 | 002,674,176 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\Windows.StateRepository.dll -- (StateRepository) SRV:[b]64bit:[/b] - [2015-07-10 13:00:07 | 001,149,440 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\XblGameSave.dll -- (XblGameSave) SRV:[b]64bit:[/b] - [2015-07-10 13:00:07 | 001,019,392 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\XboxNetApiSvc.dll -- (XboxNetApiSvc) SRV:[b]64bit:[/b] - [2015-07-10 13:00:07 | 000,512,000 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\ngcsvc.dll -- (NgcSvc) SRV:[b]64bit:[/b] - [2015-07-10 13:00:07 | 000,268,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NgcCtnrSvc.dll -- (NgcCtnrSvc) SRV:[b]64bit:[/b] - [2015-07-10 13:00:07 | 000,062,464 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\moshost.dll -- (MapsBroker) SRV:[b]64bit:[/b] - [2015-07-10 13:00:07 | 000,023,040 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AJRouter.dll -- (AJRouter) SRV:[b]64bit:[/b] - [2015-07-10 13:00:07 | 000,021,504 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\LicenseManagerSvc.dll -- (LicenseManager) SRV:[b]64bit:[/b] - [2015-07-10 13:00:06 | 000,134,144 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\cdpsvc.dll -- (CDPSvc) SRV:[b]64bit:[/b] - [2015-07-10 13:00:06 | 000,087,040 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\embeddedmodesvc.dll -- (embeddedmode) SRV:[b]64bit:[/b] - [2015-07-10 13:00:03 | 003,467,784 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WSService.dll -- (WSService) SRV:[b]64bit:[/b] - [2015-07-10 13:00:02 | 000,918,016 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\XblAuthManager.dll -- (XblAuthManager) SRV:[b]64bit:[/b] - [2015-07-10 13:00:02 | 000,836,096 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\netlogon.dll -- (Netlogon) SRV:[b]64bit:[/b] - [2015-07-10 13:00:02 | 000,322,048 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\vaultsvc.dll -- (VaultSvc) SRV:[b]64bit:[/b] - [2015-07-10 13:00:02 | 000,055,808 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\efssvc.dll -- (EFS) SRV:[b]64bit:[/b] - [2015-07-10 13:00:01 | 000,096,256 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\keyiso.dll -- (KeyIso) SRV:[b]64bit:[/b] - [2015-07-10 13:00:01 | 000,027,648 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wephostsvc.dll -- (WEPHOSTSVC) SRV:[b]64bit:[/b] - [2015-07-10 13:00:00 | 000,717,312 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\usermgr.dll -- (UserManager) SRV:[b]64bit:[/b] - [2015-07-10 13:00:00 | 000,181,760 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\ScDeviceEnum.dll -- (ScDeviceEnum) SRV:[b]64bit:[/b] - [2015-07-10 12:59:59 | 000,296,960 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\APHostService.dll -- (OneSyncSvc) SRV:[b]64bit:[/b] - [2015-07-10 12:59:59 | 000,196,096 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\dcpsvc.dll -- (DcpSvc) SRV:[b]64bit:[/b] - [2015-07-10 12:59:59 | 000,027,136 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe -- (diagnosticshub.standardcollector.service) SRV:[b]64bit:[/b] - [2015-07-10 12:59:58 | 000,143,872 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\dssvc.dll -- (DsSvc) SRV:[b]64bit:[/b] - [2015-07-10 12:59:58 | 000,039,856 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UserDataSvc_Session1) SRV:[b]64bit:[/b] - [2015-07-10 12:59:58 | 000,039,856 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UnistoreSvc_Session1) SRV:[b]64bit:[/b] - [2015-07-10 12:59:58 | 000,039,856 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (PimIndexMaintenanceSvc_Session1) SRV:[b]64bit:[/b] - [2015-07-10 12:59:58 | 000,039,856 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\svchost.exe -- (OneSyncSvc_Session1) SRV:[b]64bit:[/b] - [2015-07-10 12:59:57 | 000,405,504 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\das.dll -- (DeviceAssociationService) SRV:[b]64bit:[/b] - [2015-07-10 12:59:57 | 000,237,568 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DeviceSetupManager.dll -- (DsmSvc) SRV:[b]64bit:[/b] - [2015-07-10 12:59:56 | 000,019,968 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\smphost.dll -- (smphost) SRV:[b]64bit:[/b] - [2015-07-10 12:59:55 | 000,118,784 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\fhsvc.dll -- (fhsvc) SRV:[b]64bit:[/b] - [2015-07-10 12:59:55 | 000,013,824 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svsvc.dll -- (svsvc) SRV:[b]64bit:[/b] - [2015-07-10 12:59:54 | 000,275,456 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\EnterpriseAppMgmtSvc.dll -- (EntAppSvc) SRV:[b]64bit:[/b] - [2015-07-10 12:59:53 | 000,267,776 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\Windows.Internal.Management.dll -- (DmEnrollmentSvc) SRV:[b]64bit:[/b] - [2015-07-10 12:59:53 | 000,063,488 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\dmwappushsvc.dll -- (dmwappushservice) SRV:[b]64bit:[/b] - [2015-07-10 12:59:51 | 000,583,680 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\SmsRouterSvc.dll -- (SmsRouter) SRV:[b]64bit:[/b] - [2015-07-10 12:59:50 | 000,550,400 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofmsvc.dll -- (netprofm) SRV:[b]64bit:[/b] - [2015-07-10 12:59:50 | 000,379,904 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\SystemEventsBrokerServer.dll -- (SystemEventsBroker) SRV:[b]64bit:[/b] - [2015-07-10 12:59:50 | 000,362,928 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\NisSrv.exe -- (WdNisSvc) SRV:[b]64bit:[/b] - [2015-07-10 12:59:50 | 000,167,936 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\TimeBrokerServer.dll -- (TimeBroker) SRV:[b]64bit:[/b] - [2015-07-10 12:59:48 | 000,506,880 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicvss) SRV:[b]64bit:[/b] - [2015-07-10 12:59:48 | 000,506,880 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicvmsession) SRV:[b]64bit:[/b] - [2015-07-10 12:59:48 | 000,506,880 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmictimesync) SRV:[b]64bit:[/b] - [2015-07-10 12:59:48 | 000,506,880 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicshutdown) SRV:[b]64bit:[/b] - [2015-07-10 12:59:48 | 000,506,880 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicrdv) SRV:[b]64bit:[/b] - [2015-07-10 12:59:48 | 000,506,880 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmickvpexchange) SRV:[b]64bit:[/b] - [2015-07-10 12:59:48 | 000,506,880 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicheartbeat) SRV:[b]64bit:[/b] - [2015-07-10 12:59:48 | 000,506,880 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicguestinterface) SRV:[b]64bit:[/b] - [2015-07-10 12:59:48 | 000,024,864 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MsMpEng.exe -- (WinDefend) SRV:[b]64bit:[/b] - [2015-07-10 12:59:36 | 000,326,144 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\BthHFSrv.dll -- (BthHFSrv) SRV:[b]64bit:[/b] - [2015-07-10 11:53:53 | 001,169,408 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dosvc.dll -- (DoSvc) SRV:[b]64bit:[/b] - [2015-06-03 23:06:06 | 001,152,656 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe -- (GfExperienceService) SRV:[b]64bit:[/b] - [2015-06-03 23:06:03 | 023,007,376 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe -- (NvStreamSvc) SRV:[b]64bit:[/b] - [2014-08-16 05:29:40 | 002,899,968 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify) SRV:[b]64bit:[/b] - [2013-11-29 09:23:38 | 001,296,728 | ---- | M] (www.BitComet.com) [On_Demand | Stopped] -- C:\Program Files\BitComet\tools\BitCometService.exe -- (BITCOMET_HELPER_SERVICE) SRV:[b]64bit:[/b] - [2013-08-27 15:32:30 | 000,828,376 | ---- | M] (Intel(R) Corporation) [On_Demand | Stopped] -- C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe -- (Intel(R) SRV:[b]64bit:[/b] - [2013-08-27 15:32:14 | 000,747,520 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\iCLS Client\HeciServer.exe -- (Intel(R) SRV - [2015-08-09 14:11:07 | 000,290,960 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe -- (cphs) SRV - [2015-07-24 04:24:06 | 000,925,696 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysWOW64\Unistore.dll -- (UnistoreSvc) SRV - [2015-07-22 04:50:24 | 000,510,976 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\CoreMessaging.dll -- (CoreMessagingRegistrar) SRV - [2015-07-10 13:00:30 | 000,022,528 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\lfsvc.dll -- (lfsvc) SRV - [2015-07-10 13:00:29 | 002,049,024 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\Windows.StateRepository.dll -- (StateRepository) SRV - [2015-07-10 13:00:24 | 000,017,920 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\smphost.dll -- (smphost) SRV - [2015-07-10 13:00:23 | 000,193,024 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Windows.Internal.Management.dll -- (DmEnrollmentSvc) SRV - [2015-06-29 21:15:22 | 000,194,000 | ---- | M] (Kaspersky Lab ZAO) [Auto | Running] -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\avp.exe -- (AVP15.0.2) SRV - [2015-06-18 09:46:30 | 001,133,880 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe -- (MBAMService) SRV - [2015-06-18 09:46:28 | 001,871,160 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe -- (MBAMScheduler) SRV - [2015-06-03 23:06:06 | 001,893,008 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe -- (NvNetworkService) SRV - [2014-08-16 05:29:40 | 002,899,968 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify) SRV - [2014-03-26 16:24:44 | 000,115,512 | ---- | M] (ASUSTek Computer Inc.) [Auto | Running] -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe -- (ASLDRService) SRV - [2014-02-25 06:00:18 | 000,071,680 | ---- | M] (ASUS Cloud Corporation) [Disabled | Stopped] -- C:\Program Files (x86)\ASUS\WebStorage\2.1.2.301\AsusWSWinService.exe -- (Asus WebStorage Windows Service) SRV - [2013-12-18 12:36:04 | 000,018,432 | ---- | M] (Clarus, Inc.) [Auto | Running] -- C:\Program Files (x86)\Clarus\Samsung Drive Manager\SZDrvSvc.exe -- (SZDrvSvc) SRV - [2013-12-09 16:27:02 | 000,390,616 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS) SRV - [2013-12-09 16:26:24 | 000,169,432 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe -- (jhi_service) SRV - [2013-12-09 16:26:24 | 000,131,544 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe -- (Intel(R) SRV - [2011-11-21 15:19:50 | 000,096,896 | ---- | M] (ASUS) [Auto | Running] -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe -- (ATKGFNEXSrv) SRV - [2011-08-18 02:29:52 | 001,039,360 | ---- | M] (Hewlett-Packard Co.) [Auto | Running] -- C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL -- (HPSLPSVC) SRV - [2011-06-17 13:04:16 | 000,224,096 | ---- | M] () [Auto | Stopped] -- C:\Program Files (x86)\T-Mobile\InternetManager_H\UpdateDog\ouc.exe -- (Internet Manager. RunOuc) SRV - [2011-03-14 17:27:34 | 000,346,976 | ---- | M] () [Auto | Running] -- C:\ProgramData\DatacardService\HWDeviceService64.exe -- (HWDeviceService64.exe) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV:[b]64bit:[/b] - [2015-09-22 18:14:16 | 000,017,568 | ---- | M] (Windows (R) Win 7 DDK provider) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\gtkdrv.sys -- (TrojanKillerDriver) DRV:[b]64bit:[/b] - [2015-08-11 12:02:56 | 000,080,720 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\stornvme.sys -- (stornvme) DRV:[b]64bit:[/b] - [2015-08-09 14:10:53 | 006,270,424 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx) DRV:[b]64bit:[/b] - [2015-08-09 13:13:24 | 004,527,872 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rtwlane.sys -- (RTWlanE) DRV:[b]64bit:[/b] - [2015-08-09 13:12:39 | 000,477,784 | ---- | M] (ELAN Microelectronics Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ETD.sys -- (ETD) DRV:[b]64bit:[/b] - [2015-08-09 12:18:24 | 000,895,256 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rt640x64.sys -- (rt640x64) DRV:[b]64bit:[/b] - [2015-08-08 04:05:38 | 000,751,632 | ---- | M] (Realsil Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RtsPer.sys -- (RTSPER) DRV:[b]64bit:[/b] - [2015-08-06 05:17:40 | 000,200,528 | ---- | M] (Microsoft Corporation) [File_System | Boot | Running] -- C:\WINDOWS\SysNative\drivers\wof.sys -- (Wof) DRV:[b]64bit:[/b] - [2015-08-06 04:22:03 | 000,685,568 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WdiWiFi.sys -- (wdiwifi) DRV:[b]64bit:[/b] - [2015-08-03 04:18:37 | 000,046,432 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\msgpiowin32.sys -- (msgpiowin32) DRV:[b]64bit:[/b] - [2015-08-03 04:17:53 | 000,052,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wpcfltr.sys -- (wpcfltr) DRV:[b]64bit:[/b] - [2015-08-03 04:17:45 | 000,516,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\USBHUB3.SYS -- (USBHUB3) DRV:[b]64bit:[/b] - [2015-07-30 05:44:26 | 000,065,536 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bthhfenum.sys -- (BthHFEnum) DRV:[b]64bit:[/b] - [2015-07-24 04:29:58 | 000,067,072 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser) DRV:[b]64bit:[/b] - [2015-07-17 06:23:30 | 000,934,752 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\WINDOWS\SysNative\drivers\refsv1.sys -- (ReFSv1) DRV:[b]64bit:[/b] - [2015-07-16 18:04:28 | 000,472,872 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud) DRV:[b]64bit:[/b] - [2015-07-16 07:39:09 | 000,061,280 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\dam.sys -- (dam) DRV:[b]64bit:[/b] - [2015-07-14 04:04:21 | 000,046,080 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\UcmUcsi.sys -- (UcmUcsi) DRV:[b]64bit:[/b] - [2015-07-10 18:34:48 | 000,038,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\terminpt.sys -- (terminpt) DRV:[b]64bit:[/b] - [2015-07-10 18:34:39 | 000,029,536 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport) DRV:[b]64bit:[/b] - [2015-07-10 13:01:20 | 000,029,536 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WpdUpFltr.sys -- (WpdUpFltr) DRV:[b]64bit:[/b] - [2015-07-10 13:00:14 | 000,380,768 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\clfs.sys -- (CLFS) DRV:[b]64bit:[/b] - [2015-07-10 13:00:14 | 000,215,552 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\ahcache.sys -- (ahcache) DRV:[b]64bit:[/b] - [2015-07-10 13:00:10 | 000,106,520 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\WindowsTrustedRT.sys -- (WindowsTrustedRT) DRV:[b]64bit:[/b] - [2015-07-10 13:00:10 | 000,061,952 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\UcmCx.sys -- (UcmCx0101) DRV:[b]64bit:[/b] - [2015-07-10 13:00:10 | 000,031,072 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\WINDOWS\SysNative\drivers\fs_rec.sys -- (Fs_Rec) DRV:[b]64bit:[/b] - [2015-07-10 13:00:09 | 000,200,544 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VerifierExt.sys -- (VerifierExt) DRV:[b]64bit:[/b] - [2015-07-10 13:00:09 | 000,153,440 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\wfplwfs.sys -- (WFPLWFS) DRV:[b]64bit:[/b] - [2015-07-10 13:00:09 | 000,061,952 | ---- | M] (Microsoft Corporation) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\storqosflt.sys -- (storqosflt) DRV:[b]64bit:[/b] - [2015-07-10 13:00:09 | 000,041,984 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\condrv.sys -- (condrv) DRV:[b]64bit:[/b] - [2015-07-10 13:00:09 | 000,026,624 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ioqos.sys -- (IoQos) DRV:[b]64bit:[/b] - [2015-07-10 13:00:04 | 000,048,128 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\mmcss.sys -- (MMCSS) DRV:[b]64bit:[/b] - [2015-07-10 13:00:00 | 000,245,088 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ufx01000.sys -- (Ufx01000) DRV:[b]64bit:[/b] - [2015-07-10 13:00:00 | 000,159,072 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\msgpioclx.sys -- (GPIOClx0101) DRV:[b]64bit:[/b] - [2015-07-10 13:00:00 | 000,077,664 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SpbCx.sys -- (SpbCx) DRV:[b]64bit:[/b] - [2015-07-10 13:00:00 | 000,074,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SerCx.sys -- (SerCx) DRV:[b]64bit:[/b] - [2015-07-10 13:00:00 | 000,057,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\urscx01000.sys -- (UrsCx01000) DRV:[b]64bit:[/b] - [2015-07-10 13:00:00 | 000,039,264 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\SysNative\drivers\cnghwassist.sys -- (cnghwassist) DRV:[b]64bit:[/b] - [2015-07-10 12:59:59 | 000,155,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SerCx2.sys -- (SerCx2) DRV:[b]64bit:[/b] - [2015-07-10 12:59:59 | 000,088,928 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\EhStorClass.sys -- (EhStorClass) DRV:[b]64bit:[/b] - [2015-07-10 12:59:59 | 000,011,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mshidumdf.sys -- (mshidumdf) DRV:[b]64bit:[/b] - [2015-07-10 12:59:56 | 000,008,192 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\gpuenergydrv.sys -- (GpuEnergyDrv) DRV:[b]64bit:[/b] - [2015-07-10 12:59:53 | 000,129,024 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NdisImPlatform.sys -- (NdisImPlatform) DRV:[b]64bit:[/b] - [2015-07-10 12:59:53 | 000,124,928 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\Ndu.sys -- (Ndu) DRV:[b]64bit:[/b] - [2015-07-10 12:59:52 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NdisVirtualBus.sys -- (NdisVirtualBus) DRV:[b]64bit:[/b] - [2015-07-10 12:59:50 | 000,119,648 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WdNisDrv.sys -- (WdNisDrv) DRV:[b]64bit:[/b] - [2015-07-10 12:59:50 | 000,082,432 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\mslldp.sys -- (MsLldp) DRV:[b]64bit:[/b] - [2015-07-10 12:59:48 | 000,291,680 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WdFilter.sys -- (WdFilter) DRV:[b]64bit:[/b] - [2015-07-10 12:59:48 | 000,209,760 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Ucx01000.sys -- (Ucx01000) DRV:[b]64bit:[/b] - [2015-07-10 12:59:48 | 000,127,840 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\acpiex.sys -- (acpiex) DRV:[b]64bit:[/b] - [2015-07-10 12:59:48 | 000,098,144 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\pdc.sys -- (pdc) DRV:[b]64bit:[/b] - [2015-07-10 12:59:48 | 000,083,968 | ---- | M] (Microsoft Corporation) [File_System | System | Running] -- C:\Windows\SysNative\drivers\filecrypt.sys -- (FileCrypt) DRV:[b]64bit:[/b] - [2015-07-10 12:59:48 | 000,061,440 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt) DRV:[b]64bit:[/b] - [2015-07-10 12:59:48 | 000,044,568 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WdBoot.sys -- (WdBoot) DRV:[b]64bit:[/b] - [2015-07-10 12:59:48 | 000,044,032 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Udecx.sys -- (UdeCx) DRV:[b]64bit:[/b] - [2015-07-10 12:59:48 | 000,031,744 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vhf.sys -- (vhf) DRV:[b]64bit:[/b] - [2015-07-10 12:59:40 | 000,033,280 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD) DRV:[b]64bit:[/b] - [2015-07-10 12:59:40 | 000,028,512 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\urschipidea.sys -- (UrsChipidea) DRV:[b]64bit:[/b] - [2015-07-10 12:59:40 | 000,027,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\urssynopsys.sys -- (UrsSynopsys) DRV:[b]64bit:[/b] - [2015-07-10 12:59:40 | 000,026,624 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\npsvctrig.sys -- (npsvctrig) DRV:[b]64bit:[/b] - [2015-07-10 12:59:40 | 000,017,944 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\WindowsTrustedRTProxy.sys -- (WindowsTrustedRTProxy) DRV:[b]64bit:[/b] - [2015-07-10 12:59:39 | 000,705,376 | ---- | M] (Mellanox) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mlx4_bus.sys -- (mlx4_bus) DRV:[b]64bit:[/b] - [2015-07-10 12:59:39 | 000,474,464 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\spaceport.sys -- (spaceport) DRV:[b]64bit:[/b] - [2015-07-10 12:59:39 | 000,424,800 | ---- | M] (Mellanox) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ibbus.sys -- (ibbus) DRV:[b]64bit:[/b] - [2015-07-10 12:59:39 | 000,371,552 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\USBXHCI.SYS -- (USBXHCI) DRV:[b]64bit:[/b] - [2015-07-10 12:59:39 | 000,305,504 | ---- | M] (VIA Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\VSTXRAID.SYS -- (VSTXRAID) DRV:[b]64bit:[/b] - [2015-07-10 12:59:39 | 000,133,984 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\storahci.sys -- (storahci) DRV:[b]64bit:[/b] - [2015-07-10 12:59:39 | 000,127,840 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ufxsynopsys.sys -- (ufxsynopsys) DRV:[b]64bit:[/b] - [2015-07-10 12:59:39 | 000,094,048 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\UfxChipidea.sys -- (UfxChipidea) DRV:[b]64bit:[/b] - [2015-07-10 12:59:39 | 000,077,664 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\uaspstor.sys -- (UASPStor) DRV:[b]64bit:[/b] - [2015-07-10 12:59:39 | 000,076,128 | ---- | M] (Mellanox) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ndfltr.sys -- (ndfltr) DRV:[b]64bit:[/b] - [2015-07-10 12:59:39 | 000,063,840 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\mvumis.sys -- (mvumis) DRV:[b]64bit:[/b] - [2015-07-10 12:59:39 | 000,059,232 | ---- | M] (Mellanox) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\winverbs.sys -- (WinVerbs) DRV:[b]64bit:[/b] - [2015-07-10 12:59:39 | 000,058,720 | ---- | M] (Avago Technologies) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\percsas3i.sys -- (percsas3i) DRV:[b]64bit:[/b] - [2015-07-10 12:59:39 | 000,058,208 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\percsas2i.sys -- (percsas2i) DRV:[b]64bit:[/b] - [2015-07-10 12:59:39 | 000,055,296 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BasicDisplay.sys -- (BasicDisplay) DRV:[b]64bit:[/b] - [2015-07-10 12:59:39 | 000,041,472 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BasicRender.sys -- (BasicRender) DRV:[b]64bit:[/b] - [2015-07-10 12:59:39 | 000,040,288 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\storufs.sys -- (storufs) DRV:[b]64bit:[/b] - [2015-07-10 12:59:39 | 000,031,072 | ---- | M] (Promise Technology, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor) DRV:[b]64bit:[/b] - [2015-07-10 12:59:39 | 000,028,512 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\uefi.sys -- (UEFI) DRV:[b]64bit:[/b] - [2015-07-10 12:59:39 | 000,026,976 | ---- | M] (Mellanox) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\winmad.sys -- (WinMad) DRV:[b]64bit:[/b] - [2015-07-10 12:59:39 | 000,017,760 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\swenum.inf_amd64_2a699e44676b7781\swenum.sys -- (swenum) DRV:[b]64bit:[/b] - [2015-07-10 12:59:38 | 003,436,896 | ---- | M] (QLogic Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv) DRV:[b]64bit:[/b] - [2015-07-10 12:59:38 | 001,135,456 | ---- | M] (PMC-Sierra) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\adp80xx.sys -- (ADP80XX) DRV:[b]64bit:[/b] - [2015-07-10 12:59:38 | 000,673,120 | ---- | M] (Intel Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\iaStorAV.sys -- (iaStorAV) DRV:[b]64bit:[/b] - [2015-07-10 12:59:38 | 000,531,296 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv) DRV:[b]64bit:[/b] - [2015-07-10 12:59:38 | 000,259,424 | ---- | M] (AMD Technologies Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs) DRV:[b]64bit:[/b] - [2015-07-10 12:59:38 | 000,222,720 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xboxgip.sys -- (xboxgip) DRV:[b]64bit:[/b] - [2015-07-10 12:59:38 | 000,207,712 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tpm.sys -- (TPM) DRV:[b]64bit:[/b] - [2015-07-10 12:59:38 | 000,116,736 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\capimg.sys -- (CapImg) DRV:[b]64bit:[/b] - [2015-07-10 12:59:38 | 000,107,360 | ---- | M] (LSI) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\3ware.sys -- (3ware) DRV:[b]64bit:[/b] - [2015-07-10 12:59:38 | 000,104,800 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2i.sys -- (LSI_SAS2i) DRV:[b]64bit:[/b] - [2015-07-10 12:59:38 | 000,099,168 | ---- | M] (Avago Technologies) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas3i.sys -- (LSI_SAS3i) DRV:[b]64bit:[/b] - [2015-07-10 12:59:38 | 000,083,296 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata) DRV:[b]64bit:[/b] - [2015-07-10 12:59:38 | 000,082,784 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sss.sys -- (LSI_SSS) DRV:[b]64bit:[/b] - [2015-07-10 12:59:38 | 000,064,352 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD) DRV:[b]64bit:[/b] - [2015-07-10 12:59:38 | 000,050,016 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hidinterrupt.sys -- (hidinterrupt) DRV:[b]64bit:[/b] - [2015-07-10 12:59:38 | 000,032,256 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\buttonconverter.sys -- (buttonconverter) DRV:[b]64bit:[/b] - [2015-07-10 12:59:38 | 000,026,976 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata) DRV:[b]64bit:[/b] - [2015-07-10 12:59:38 | 000,025,600 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xinputhid.sys -- (xinputhid) DRV:[b]64bit:[/b] - [2015-07-10 12:59:38 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\kdnic.sys -- (kdnic) DRV:[b]64bit:[/b] - [2015-07-10 12:59:38 | 000,022,528 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDPrint.sys -- (WSDPrintDevice) DRV:[b]64bit:[/b] - [2015-07-10 12:59:38 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\genericusbfn.sys -- (genericusbfn) DRV:[b]64bit:[/b] - [2015-07-10 12:59:38 | 000,017,624 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bcmfn2.sys -- (bcmfn2) DRV:[b]64bit:[/b] - [2015-07-10 12:59:38 | 000,012,800 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\acpitime.sys -- (acpitime) DRV:[b]64bit:[/b] - [2015-07-10 12:59:38 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\acpipagr.sys -- (acpipagr) DRV:[b]64bit:[/b] - [2015-07-10 12:59:37 | 000,024,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDScan.sys -- (WSDScan) DRV:[b]64bit:[/b] - [2015-07-10 12:59:36 | 000,276,832 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus) DRV:[b]64bit:[/b] - [2015-07-10 12:59:36 | 000,237,568 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\BthLEEnum.sys -- (BthLEEnum) DRV:[b]64bit:[/b] - [2015-07-10 12:59:36 | 000,122,608 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSSi_I2C.sys -- (iaLPSSi_I2C) DRV:[b]64bit:[/b] - [2015-07-10 12:59:36 | 000,116,576 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\EhStorTcgDrv.sys -- (EhStorTcgDrv) DRV:[b]64bit:[/b] - [2015-07-10 12:59:36 | 000,094,720 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netvsc.sys -- (netvsc) DRV:[b]64bit:[/b] - [2015-07-10 12:59:36 | 000,092,512 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdstor.sys -- (sdstor) DRV:[b]64bit:[/b] - [2015-07-10 12:59:36 | 000,074,080 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vpci.sys -- (vpci) DRV:[b]64bit:[/b] - [2015-07-10 12:59:36 | 000,064,000 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Synth3dVsc.sys -- (Synth3dVsc) DRV:[b]64bit:[/b] - [2015-07-10 12:59:36 | 000,051,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hidi2c.sys -- (hidi2c) DRV:[b]64bit:[/b] - [2015-07-10 12:59:36 | 000,043,872 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\intelpep.sys -- (intelpep) DRV:[b]64bit:[/b] - [2015-07-10 12:59:36 | 000,042,496 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BthAvrcpTg.sys -- (BthAvrcpTg) DRV:[b]64bit:[/b] - [2015-07-10 12:59:36 | 000,039,936 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\compositebus.inf_amd64_98334ba6e76853ba\CompositeBus.sys -- (CompositeBus) DRV:[b]64bit:[/b] - [2015-07-10 12:59:36 | 000,038,128 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSSi_GPIO.sys -- (iaLPSSi_GPIO) DRV:[b]64bit:[/b] - [2015-07-10 12:59:36 | 000,033,792 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dmvsc.sys -- (dmvsc) DRV:[b]64bit:[/b] - [2015-07-10 12:59:36 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fcvsc.sys -- (fcvsc) DRV:[b]64bit:[/b] - [2015-07-10 12:59:36 | 000,030,720 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BthhfHid.sys -- (bthhfhid) DRV:[b]64bit:[/b] - [2015-07-10 12:59:36 | 000,026,112 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HyperVideo.sys -- (HyperVideo) DRV:[b]64bit:[/b] - [2015-07-10 12:59:36 | 000,016,384 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hyperkbd.sys -- (hyperkbd) DRV:[b]64bit:[/b] - [2015-07-10 12:59:36 | 000,013,312 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vmgencounter.sys -- (gencounter) DRV:[b]64bit:[/b] - [2015-06-29 21:15:22 | 000,190,648 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\kneps.sys -- (kneps) DRV:[b]64bit:[/b] - [2015-06-29 21:15:22 | 000,085,360 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\klwtp.sys -- (Klwtp) DRV:[b]64bit:[/b] - [2015-06-29 21:15:22 | 000,077,680 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\klwfp.sys -- (klwfp) DRV:[b]64bit:[/b] - [2015-06-29 21:15:22 | 000,039,792 | ---- | M] (Kaspersky Lab ZAO) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\klmouflt.sys -- (klmouflt) DRV:[b]64bit:[/b] - [2015-06-29 21:15:22 | 000,024,944 | ---- | M] (Kaspersky Lab ZAO) [File_System | System | Running] -- C:\Windows\SysNative\drivers\klpd.sys -- (klpd) DRV:[b]64bit:[/b] - [2015-06-29 21:15:20 | 000,831,664 | ---- | M] (Kaspersky Lab ZAO) [File_System | System | Running] -- C:\Windows\SysNative\drivers\klif.sys -- (KLIF) DRV:[b]64bit:[/b] - [2015-06-29 21:15:20 | 000,478,392 | ---- | M] (Kaspersky Lab ZAO) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\kl1.sys -- (kl1) DRV:[b]64bit:[/b] - [2015-06-29 21:15:20 | 000,247,016 | ---- | M] (Kaspersky Lab UK Ltd) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\cm_km_w.sys -- (cm_km_w) DRV:[b]64bit:[/b] - [2015-06-29 21:15:20 | 000,226,480 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\klhk.sys -- (klhk) DRV:[b]64bit:[/b] - [2015-06-29 21:15:20 | 000,159,960 | ---- | M] (Kaspersky Lab ZAO) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\klflt.sys -- (klflt) DRV:[b]64bit:[/b] - [2015-06-29 21:15:20 | 000,064,368 | ---- | M] (Kaspersky Lab ZAO) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\kldisk.sys -- (kldisk) DRV:[b]64bit:[/b] - [2015-06-29 21:15:20 | 000,040,304 | ---- | M] (Kaspersky Lab ZAO) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\klkbdflt.sys -- (klkbdflt) DRV:[b]64bit:[/b] - [2015-06-29 21:15:20 | 000,039,792 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\klim6.sys -- (KLIM6) DRV:[b]64bit:[/b] - [2015-06-18 09:48:08 | 000,064,216 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mwac.sys -- (MBAMWebAccessControl) DRV:[b]64bit:[/b] - [2015-06-18 09:47:50 | 000,025,816 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector) DRV:[b]64bit:[/b] - [2015-06-03 23:06:03 | 000,019,600 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys -- (NvStreamKms) DRV:[b]64bit:[/b] - [2015-05-19 05:29:01 | 000,046,768 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvvad64v.sys -- (nvvad_WaveExtensible) DRV:[b]64bit:[/b] - [2014-06-12 11:10:06 | 001,457,344 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CHDRT64.sys -- (CnxtHdAudService) DRV:[b]64bit:[/b] - [2014-03-31 13:43:00 | 000,071,952 | ---- | M] (ASUS Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AsusTP.sys -- (ATP) DRV:[b]64bit:[/b] - [2014-03-27 14:00:12 | 000,017,152 | ---- | M] (ASUSTek Computer Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AiCharger.sys -- (AiCharger) DRV:[b]64bit:[/b] - [2014-03-17 11:57:10 | 000,843,480 | ---- | M] (Realtek ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Rt630x64.sys -- (RTL8168) DRV:[b]64bit:[/b] - [2014-03-01 22:32:31 | 000,038,296 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\intelaud.sys -- (intaud_WaveExtensible) DRV:[b]64bit:[/b] - [2014-03-01 22:32:31 | 000,027,032 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iwdbus.sys -- (iwdbus) DRV:[b]64bit:[/b] - [2014-02-11 18:08:26 | 000,014,136 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | Auto | Running] -- C:\Program Files\ASUS\P4G\PLCTRL.sys -- (plctrl) DRV:[b]64bit:[/b] - [2014-01-22 09:52:10 | 000,206,080 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudmdm.sys -- (ssudmdm) DRV:[b]64bit:[/b] - [2014-01-22 09:52:10 | 000,108,800 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudbus.sys -- (dg_ssudbus) DRV:[b]64bit:[/b] - [2013-12-09 16:26:24 | 000,100,312 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\TeeDriverx64.sys -- (MEIx64) DRV:[b]64bit:[/b] - [2013-11-06 10:18:12 | 000,631,656 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStorA.sys -- (iaStorA) DRV:[b]64bit:[/b] - [2013-10-08 03:47:18 | 000,020,280 | ---- | M] (ASUS) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AsHIDSwitch64.sys -- (HIDSwitch) DRV:[b]64bit:[/b] - [2012-09-18 10:22:30 | 000,239,104 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ew_juwwanecm.sys -- (huawei_wwanecm) DRV:[b]64bit:[/b] - [2012-08-20 02:55:56 | 000,104,960 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ew_jucdcacm.sys -- (huawei_cdcacm) DRV:[b]64bit:[/b] - [2012-08-20 02:55:56 | 000,090,112 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ew_jubusenum.sys -- (huawei_enumerator) DRV:[b]64bit:[/b] - [2012-08-20 02:55:56 | 000,030,720 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ew_juextctrl.sys -- (huawei_ext_ctrl) DRV:[b]64bit:[/b] - [2012-08-06 05:17:18 | 000,017,280 | ---- | M] ( ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\kbfiltr.sys -- (kbfiltr) DRV:[b]64bit:[/b] - [2012-07-27 17:38:24 | 000,029,616 | ---- | M] (Kaspersky Lab) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\klelam.sys -- (klelam) DRV:[b]64bit:[/b] - [2010-07-27 03:52:16 | 000,117,248 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ew_hwusbdev.sys -- (ew_hwusbdev) DRV:[b]64bit:[/b] - [2010-03-20 06:06:58 | 000,013,952 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ew_usbenumfilter.sys -- (ew_usbenumfilter) DRV - [2015-09-28 20:26:18 | 000,056,496 | ---- | M] (GMER) [Kernel | On_Demand | Unknown] -- C:\Users\MAGDAL~1\AppData\Local\Temp\fxldapoc.sys -- (fxldapoc) DRV - [2015-07-10 12:59:39 | 000,017,760 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\DriverStore\FileRepository\swenum.inf_amd64_2a699e44676b7781\swenum.sys -- (swenum) DRV - [2015-07-10 12:59:36 | 000,039,936 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_98334ba6e76853ba\CompositeBus.sys -- (CompositeBus) DRV - [2013-07-02 17:45:52 | 000,019,768 | ---- | M] (ASUSTek Computer Inc.) [Kernel | System | Running] -- C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys -- (ATKWMIACPIIO) DRV - [2012-06-21 15:58:20 | 000,020,400 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Clarus\Samsung Drive Manager\mdf16.sys -- (mdf16) DRV - [2012-06-21 15:58:10 | 000,099,248 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Clarus\Samsung Drive Manager\mvd23.sys -- (mvd23) DRV - [2009-07-02 18:36:14 | 000,015,416 | ---- | M] (ASUS) [Kernel | Auto | Running] -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys -- (ASMMAP64) [color=#E56717]========== Standard Registry (All) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data] IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ASJB IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ASJB IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\system32\blank.htm IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll (Microsoft Corporation) IE - HKCU\..\SearchScopes,DefaultScope = {2039DD3E-4E72-4C20-90E7-9FD959AA7D06} IE - HKCU\..\SearchScopes\{2039DD3E-4E72-4C20-90E7-9FD959AA7D06}: "URL" = http://www.google.com/cse?cx=partner-pub-0900663996874144:4435833467&ie=UTF-8&q={searchTerms}&sa=Search&ref=#gsc.tab=0&gsc.q={searchTerms}&gsc.page=1 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll ( Microsoft Corporation) FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll File not found FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF - HKLM\Software\MozillaPlugins\@kaspersky.com/content_blocker_663BE84DBCC949E88C7600F63CA7F098: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\FFExt\content_blocker@kaspersky.com [2015-09-23 22:07:29 | 000,000,000 | ---D | M] FF - HKLM\Software\MozillaPlugins\@kaspersky.com/virtual_keyboard_07402848C2F6470194F131B0F3DE025E: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\FFExt\virtual_keyboard@kaspersky.com [2015-09-23 22:07:42 | 000,000,000 | ---D | M] FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Users\Magdalena\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\content_blocker_663BE84DBCC949E88C7600F63CA7F098@kaspersky.com: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\FFExt\content_blocker@kaspersky.com [2015-09-23 22:07:29 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\virtual_keyboard_07402848C2F6470194F131B0F3DE025E@kaspersky.com: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\FFExt\virtual_keyboard@kaspersky.com [2015-09-23 22:07:42 | 000,000,000 | ---D | M] [color=#E56717]========== Chrome ==========[/color] CHR - default_search_provider: 3E82A104943022854B19452553FC1F3D3DDCF3A884B31B6850D4E7842376C01F () CHR - default_search_provider: search_url = BE1AFFE719CCE37EC896A4AA082CAF57DE21A7496223B68821347489185A316E CHR - default_search_provider: suggest_url = CHR - homepage: 058FC2BECC854ED552B1D0734A4D21F32F1DEE626EA21B16BF6525321D658559 O1 HOSTS File: ([2013-08-22 15:25:41 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts O2:[b]64bit:[/b] - BHO: (Virtual Keyboard Plugin) - {4A66AD60-A03D-4D01-86F0-5F0F7C0EF1AD} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\x64\IEExt\ie_plugin.dll (Kaspersky Lab ZAO) O2:[b]64bit:[/b] - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) O2:[b]64bit:[/b] - BHO: (Content Blocker Plugin) - {93BC2EA7-2F17-4729-948A-D2E03FFB2412} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\x64\IEExt\ie_plugin.dll (Kaspersky Lab ZAO) O2:[b]64bit:[/b] - BHO: (Safe Money Plugin) - {AB379017-4C03-4E00-8EDF-E6D6AF7CCF82} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\x64\IEExt\ie_plugin.dll (Kaspersky Lab ZAO) O2:[b]64bit:[/b] - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) O2 - BHO: (Virtual Keyboard Plugin) - {4A66AD60-A03D-4D01-86F0-5F0F7C0EF1AD} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\IEExt\ie_plugin.dll (Kaspersky Lab ZAO) O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) O2 - BHO: (Content Blocker Plugin) - {93BC2EA7-2F17-4729-948A-D2E03FFB2412} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\IEExt\ie_plugin.dll (Kaspersky Lab ZAO) O2 - BHO: (Safe Money Plugin) - {AB379017-4C03-4E00-8EDF-E6D6AF7CCF82} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\IEExt\ie_plugin.dll (Kaspersky Lab ZAO) O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No CLSID value found. O4:[b]64bit:[/b] - HKLM..\Run: [BCSSync] C:\Program Files\Microsoft Office\Office14\BCSSync.exe (Microsoft Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [ETDCtrl] C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronics Corp.) O4:[b]64bit:[/b] - HKLM..\Run: [NvBackend] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [ShadowPlay] C:\WINDOWS\SysNative\nvspcap64.dll (NVIDIA Corporation) O4 - HKLM..\Run: [ASUSPRP] C:\Program Files (x86)\ASUS\APRP\APRP.EXE (ASUSTek Computer Inc.) O4 - HKLM..\Run: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Hewlett-Packard) O4 - HKLM..\Run: [WebStorage] C:\Program Files (x86)\ASUS\WebStorage\2.1.2.301\ASUSWSLoader.exe () O4 - HKLM..\Run: [YTDownloader] "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot File not found O4 - HKCU..\Run: [Adobe Acrobat Synchronizer] "C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe" File not found O4 - HKCU..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd) O4 - HKCU..\Run: [Facebook Update] C:\Users\Magdalena\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.) O4 - HKCU..\Run: [OneDrive] C:\Users\Magdalena\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation) O4 - HKCU..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe File not found O4 - HKCU..\RunOnce: [Uninstall C:\Users\Magdalena\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Magdalena\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64" File not found O4 - HKCU..\RunOnce: [Uninstall C:\Users\Magdalena\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Magdalena\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64" File not found O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: ForceActiveDesktopOn = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRecentDocsHistory = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRun = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFolderOptions = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 28 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DSCAutomationHostEnabled = 2 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUIADesktopToggle = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption = O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext = O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13 O8:[b]64bit:[/b] - Extra context menu item: Dodaj stronę internetową do istniejącego pliku PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll/AcroIEAppend.html File not found O8:[b]64bit:[/b] - Extra context menu item: Dołącz obie&kt docelowy łącza do istniejącego pliku PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll/AcroIEAppendSelLinks.html File not found O8:[b]64bit:[/b] - Extra context menu item: E&ksportuj do programu Microsoft Excel - C:\Program Files\Microsoft Office\Office14\EXCEL.EXE (Microsoft Corporation) O8:[b]64bit:[/b] - Extra context menu item: Kon&wertuj stronę internetową do pliku Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll/AcroIECapture.html File not found O8:[b]64bit:[/b] - Extra context menu item: Konwertuj obiekt docelowy łącza na plik Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll/AcroIECaptureSelLinks.html File not found O8:[b]64bit:[/b] - Extra context menu item: Wyślij &do programu OneNote - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O8 - Extra context menu item: Dodaj stronę internetową do istniejącego pliku PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll/AcroIEAppend.html File not found O8 - Extra context menu item: Dołącz obie&kt docelowy łącza do istniejącego pliku PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll/AcroIEAppendSelLinks.html File not found O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - C:\Program Files\Microsoft Office\Office14\EXCEL.EXE (Microsoft Corporation) O8 - Extra context menu item: Kon&wertuj stronę internetową do pliku Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll/AcroIECapture.html File not found O8 - Extra context menu item: Konwertuj obiekt docelowy łącza na plik Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll/AcroIECaptureSelLinks.html File not found O8 - Extra context menu item: Wyślij &do programu OneNote - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O9:[b]64bit:[/b] - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O9:[b]64bit:[/b] - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O9:[b]64bit:[/b] - Extra Button: Klawiatura wirtualna - {5547CE1F-74E9-41E5-9CBF-5211ECC37341} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\x64\IEExt\ie_plugin.dll (Kaspersky Lab ZAO) O9:[b]64bit:[/b] - Extra Button: &Notatki połączone programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation) O9:[b]64bit:[/b] - Extra 'Tools' menuitem : &Notatki połączone programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation) O9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: Klawiatura wirtualna - {5547CE1F-74E9-41E5-9CBF-5211ECC37341} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\IEExt\ie_plugin.dll (Kaspersky Lab ZAO) O9 - Extra Button: &Notatki połączone programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : &Notatki połączone programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation) O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000001 [] - C:\Windows\SysNative\NapiNSP.dll (Microsoft Corporation) O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000002 [] - C:\Windows\SysNative\pnrpnsp.dll (Microsoft Corporation) O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000003 [] - C:\Windows\SysNative\pnrpnsp.dll (Microsoft Corporation) O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000004 [] - C:\Windows\SysNative\nlaapi.dll (Microsoft Corporation) O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000005 [] - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation) O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000006 [] - C:\Windows\SysNative\winrnr.dll (Microsoft Corporation) O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Windows\SysNative\wshbth.dll (Microsoft Corporation) O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation) O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation) O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation) O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation) O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000005 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation) O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000006 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation) O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000007 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation) O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000008 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation) O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000009 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation) O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000010 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation) O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000011 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation) O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000012 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\Windows\SysWOW64\NapiNSP.dll (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\Windows\SysWOW64\pnrpnsp.dll (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\Windows\SysWOW64\pnrpnsp.dll (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Windows\SysWOW64\nlaapi.dll (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Windows\SysWOW64\winrnr.dll (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Windows\SysWOW64\wshbth.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation) O13[b]64bit:[/b] - gopher Prefix: missing O13 - gopher Prefix: missing O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{087d7481-d210-4456-b722-85c7a960dd72}: NameServer = 213.158.199.1 213.158.199.5 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0fa79880-e091-4d40-9a9d-5cdd11bff5dc}: NameServer = 213.158.199.1 213.158.199.5 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1225f886-53ad-4330-a5ed-6b8a4cafa104}: NameServer = 213.158.199.1 213.158.199.5 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{dca276b8-5b0d-48fe-9140-032d836c8899}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{fe0161c5-1694-45af-83bd-79ff02928f62}: DhcpNameServer = 192.168.0.1 O18:[b]64bit:[/b] - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysNative\MSVidCtl.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysNative\itss.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\SysNative\inetcomm.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysNative\itss.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Handler\tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysNative\tbauth.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysNative\MSVidCtl.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation) O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation) O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysWOW64\MSVidCtl.dll (Microsoft Corporation) O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll (Microsoft Corporation) O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation) O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation) O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\SysWOW64\inetcomm.dll (Microsoft Corporation) O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\ms-help - No CLSID value found O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll (Microsoft Corporation) O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation) O18 - Protocol\Handler\tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll (Microsoft Corporation) O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysWOW64\MSVidCtl.dll (Microsoft Corporation) O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysNative\mscoree.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysNative\mscoree.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysNative\mscoree.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Filter\text/xml {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL (Microsoft Corporation) O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation) O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation) O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation) O18 - Protocol\Filter\text/xml {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - explorer.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - SystemPropertiesPerformance.exe (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (explorer.exe) - explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation) O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O28:[b]64bit:[/b] - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) O29:[b]64bit:[/b] - HKLM SecurityProviders - (credssp.dll) - credssp.dll (Microsoft Corporation) O29 - HKLM SecurityProviders - (credssp.dll) - credssp.dll (Microsoft Corporation) O30:[b]64bit:[/b] - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\SysNative\msv1_0.dll (Microsoft Corporation) O30 - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\SysWow64\msv1_0.dll (Microsoft Corporation) O31 - SafeBoot: AlternateShell - cmd.exe O32 - HKLM CDRom: AutoRun - 1 O33 - MountPoints2\{88057e4f-053c-11e5-8296-382c4a1aa4d4}\Shell - "" = AutoRun O33 - MountPoints2\{88057e4f-053c-11e5-8296-382c4a1aa4d4}\Shell\AutoRun\command - "" = "F:\AutoRun.exe" O33 - MountPoints2\{96dd2aaf-8217-11e4-826a-382c4a1aa4d4}\Shell - "" = AutoRun O33 - MountPoints2\{96dd2aaf-8217-11e4-826a-382c4a1aa4d4}\Shell\AutoRun\command - "" = "F:\AutoRun.exe" O34 - HKLM BootExecute: (autocheck autochk *) O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %* O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) [color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color] [2015-09-29 18:57:35 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cnxt [2015-09-29 18:46:20 | 000,000,000 | ---D | C] -- C:\WINDOWS\LastGood [2015-09-29 18:30:01 | 000,000,000 | ---D | C] -- C:\DRIVERS [2015-09-28 22:21:40 | 000,000,000 | ---D | C] -- C:\Users\Magdalena\AppData\Local\ElevatedDiagnostics [2015-09-28 20:24:26 | 000,000,000 | ---D | C] -- C:\FRST [2015-09-27 22:49:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner [2015-09-27 22:49:23 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner [2015-09-27 22:45:52 | 000,000,000 | ---D | C] -- C:\Users\Magdalena\AppData\Roaming\WarThunder [2015-09-27 19:42:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GridinSoft Trojan Killer [2015-09-27 19:42:50 | 000,000,000 | ---D | C] -- C:\ProgramData\GridinSoft [2015-09-27 19:42:48 | 000,000,000 | ---D | C] -- C:\Program Files\GridinSoft Trojan Killer [2015-09-27 19:34:51 | 000,012,872 | ---- | C] (SurfRight B.V.) -- C:\WINDOWS\SysNative\bootdelete.exe [2015-09-27 19:04:08 | 000,000,000 | ---D | C] -- C:\ProgramData\HitmanPro [2015-09-27 18:51:33 | 000,000,000 | ---D | C] -- C:\AdwCleaner [2015-09-27 17:53:53 | 000,113,880 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\SysNative\drivers\MBAMSwissArmy.sys [2015-09-27 17:53:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware [2015-09-27 17:53:26 | 000,109,272 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\SysNative\drivers\mbamchameleon.sys [2015-09-27 17:53:26 | 000,064,216 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\SysNative\drivers\mwac.sys [2015-09-27 17:53:26 | 000,025,816 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\SysNative\drivers\mbam.sys [2015-09-27 17:53:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes Anti-Malware [2015-09-27 17:53:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes [2015-09-27 17:49:59 | 002,952,720 | ---- | C] (Conexant Systems, Inc.) -- C:\WINDOWS\SysNative\UCI64A93.dll [2015-09-27 17:49:58 | 001,136,728 | ---- | C] (Waves Audio Ltd.) -- C:\WINDOWS\SysNative\MaxxAudioAPO4064.dll [2015-09-27 17:49:58 | 001,064,024 | ---- | C] (Waves Audio Ltd.) -- C:\WINDOWS\SysNative\MaxxAudioAPOShell64.dll [2015-09-27 17:49:58 | 000,961,960 | ---- | C] (Conexant Systems Inc.) -- C:\WINDOWS\SysNative\CX64BP11.dll [2015-09-27 17:49:57 | 001,457,344 | ---- | C] (Conexant Systems Inc.) -- C:\WINDOWS\SysNative\drivers\CHDRT64.sys [2015-09-27 16:24:00 | 000,000,000 | ---D | C] -- C:\Users\Magdalena\Desktop\10 dst [2015-09-23 22:08:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Anti-Virus [2015-09-23 22:08:09 | 000,110,176 | ---- | C] (Kaspersky Lab ZAO) -- C:\WINDOWS\SysNative\klfphc.dll [2015-09-23 22:07:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Kaspersky Lab [2015-09-23 22:07:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Kaspersky Lab [2015-09-23 22:07:11 | 000,831,664 | ---- | C] (Kaspersky Lab ZAO) -- C:\WINDOWS\SysNative\drivers\klif.sys [2015-09-23 22:07:11 | 000,226,480 | ---- | C] (Kaspersky Lab ZAO) -- C:\WINDOWS\SysNative\drivers\klhk.sys [2015-09-23 22:07:11 | 000,159,960 | ---- | C] (Kaspersky Lab ZAO) -- C:\WINDOWS\SysNative\drivers\klflt.sys [2015-09-22 18:14:16 | 000,017,568 | ---- | C] (Windows (R) Win 7 DDK provider) -- C:\WINDOWS\SysNative\drivers\gtkdrv.sys [2015-09-15 15:05:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight [2015-09-15 15:05:09 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight [2015-09-15 15:05:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Silverlight [2015-09-14 17:56:15 | 000,000,000 | ---D | C] -- C:\Users\Magdalena\AppData\Roaming\WildTangent [2015-09-09 15:47:54 | 000,000,000 | ---D | C] -- C:\Users\Magdalena\AppData\Local\MicrosoftEdge [2015-09-07 11:12:30 | 000,000,000 | ---D | C] -- C:\Users\Magdalena\AppData\Local\Clarus [2015-08-28 15:22:51 | 000,609,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ci.dll [2015-08-20 11:14:26 | 006,878,256 | ---- | C] (Microsoft Corp.) -- C:\WINDOWS\SysWow64\Windows.Media.Protection.PlayReady.dll [2015-08-20 11:14:25 | 008,613,200 | ---- | C] (Microsoft Corp.) -- C:\WINDOWS\SysNative\Windows.Media.Protection.PlayReady.dll [2015-08-20 11:14:16 | 021,875,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edgehtml.dll [2015-08-20 11:14:08 | 016,706,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Xaml.dll [2015-08-20 11:13:59 | 013,024,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Xaml.dll [2015-08-20 11:13:57 | 003,780,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_nt.dll [2015-08-20 11:13:55 | 018,805,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\edgehtml.dll [2015-08-20 11:13:51 | 002,415,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DWrite.dll [2015-08-20 11:13:49 | 003,527,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tquery.dll [2015-08-20 11:13:48 | 002,558,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mssrch.dll [2015-08-20 11:13:47 | 004,532,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe [2015-08-20 11:13:46 | 001,212,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RemoteNaturalLanguage.dll [2015-08-20 11:13:45 | 002,462,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfcore.dll [2015-08-20 11:13:45 | 002,416,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MFMediaEngine.dll [2015-08-20 11:13:45 | 002,224,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NetworkMobileSettings.dll [2015-08-20 11:13:44 | 007,523,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Chakra.dll [2015-08-20 11:13:44 | 001,643,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\diagtrack.dll [2015-08-20 11:13:44 | 001,162,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Speech.dll [2015-08-20 11:13:43 | 004,048,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\explorer.exe [2015-08-20 11:13:43 | 002,178,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentServer.dll [2015-08-20 11:13:43 | 002,093,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlidsvc.dll [2015-08-20 11:13:43 | 001,601,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Speech.dll [2015-08-20 11:13:43 | 000,898,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RemoteNaturalLanguage.dll [2015-08-20 11:13:42 | 000,595,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LogonController.dll [2015-08-20 11:13:41 | 002,151,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfcore.dll [2015-08-20 11:13:40 | 001,964,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mssrch.dll [2015-08-20 11:13:40 | 000,583,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mf.dll [2015-08-20 11:13:39 | 008,021,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntoskrnl.exe [2015-08-20 11:13:38 | 000,778,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.Store.dll [2015-08-20 11:13:38 | 000,644,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfsvr.dll [2015-08-20 11:13:38 | 000,494,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LogonController.dll [2015-08-20 11:13:37 | 002,748,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tquery.dll [2015-08-20 11:13:37 | 001,916,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MFMediaEngine.dll [2015-08-20 11:13:37 | 001,890,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dwmcore.dll [2015-08-20 11:13:37 | 000,996,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RDXService.dll [2015-08-20 11:13:36 | 003,588,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kfull.sys [2015-08-20 11:13:36 | 001,795,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentExtensions.dll [2015-08-20 11:13:36 | 001,593,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dwmcore.dll [2015-08-20 11:13:36 | 001,383,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kbase.sys [2015-08-20 11:13:36 | 000,783,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfsvr.dll [2015-08-20 11:13:36 | 000,586,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.Store.dll [2015-08-20 11:13:35 | 005,454,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Chakra.dll [2015-08-20 11:13:35 | 000,292,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LockAppHost.exe [2015-08-20 11:13:35 | 000,273,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.LockScreen.dll [2015-08-20 11:13:35 | 000,195,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.LockScreen.dll [2015-08-20 11:13:34 | 001,334,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UIAutomationCore.dll [2015-08-20 11:13:34 | 000,801,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WWAHost.exe [2015-08-20 11:13:34 | 000,505,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\dxgmms2.sys [2015-08-20 11:13:34 | 000,365,056 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\SysNative\atmfd.dll [2015-08-20 11:13:34 | 000,310,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ActionCenter.dll [2015-08-20 11:13:34 | 000,303,104 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\atmfd.dll [2015-08-20 11:13:34 | 000,243,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LockAppHost.exe [2015-08-20 11:13:34 | 000,162,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SubscriptionMgr.dll [2015-08-20 11:13:34 | 000,120,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NetworkStatus.dll [2015-08-20 11:13:33 | 000,918,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfplat.dll [2015-08-20 11:13:33 | 000,893,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MbaeApiPublic.dll [2015-08-20 11:13:33 | 000,700,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WWAHost.exe [2015-08-20 11:13:33 | 000,685,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\WdiWiFi.sys [2015-08-20 11:13:33 | 000,608,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fontdrvhost.exe [2015-08-20 11:13:33 | 000,554,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\directmanipulation.dll [2015-08-20 11:13:33 | 000,261,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ActionCenter.dll [2015-08-20 11:13:32 | 001,274,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wifinetworkmanager.dll [2015-08-20 11:13:32 | 001,112,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UIAutomationCore.dll [2015-08-20 11:13:32 | 000,814,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msctfuimanager.dll [2015-08-20 11:13:32 | 000,752,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msctfuimanager.dll [2015-08-20 11:13:32 | 000,454,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\directmanipulation.dll [2015-08-20 11:13:32 | 000,306,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NotificationObjFactory.dll [2015-08-20 11:13:32 | 000,268,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NotificationObjFactory.dll [2015-08-20 11:13:32 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WinBioDataModel.dll [2015-08-20 11:13:31 | 001,087,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfplat.dll [2015-08-20 11:13:31 | 000,593,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wcmsvc.dll [2015-08-20 11:13:31 | 000,573,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Cortana.Desktop.dll [2015-08-20 11:13:31 | 000,563,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MbaeApi.dll [2015-08-20 11:13:31 | 000,539,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fontdrvhost.exe [2015-08-20 11:13:31 | 000,516,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\USBHUB3.SYS [2015-08-20 11:13:31 | 000,317,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\configmanager2.dll [2015-08-20 11:13:31 | 000,200,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\wof.sys [2015-08-20 11:13:31 | 000,137,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LocationPermissions.dll [2015-08-20 11:13:31 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\VPNv2CSP.dll [2015-08-20 11:13:30 | 001,822,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntdll.dll [2015-08-20 11:13:30 | 000,993,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ReAgent.dll [2015-08-20 11:13:30 | 000,235,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_Notifications.dll [2015-08-20 11:13:30 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UserMgrProxy.dll [2015-08-20 11:13:30 | 000,215,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\notepad.exe [2015-08-20 11:13:30 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cloudAP.dll [2015-08-20 11:13:30 | 000,179,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\coredpus.dll [2015-08-20 11:13:29 | 000,671,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MbaeApiPublic.dll [2015-08-20 11:13:29 | 000,448,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MbaeApi.dll [2015-08-20 11:13:29 | 000,052,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\wpcfltr.sys [2015-08-20 11:13:28 | 000,845,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ReAgent.dll [2015-08-20 11:13:28 | 000,642,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdbui.dll [2015-08-20 11:13:28 | 000,342,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LocationGeofences.dll [2015-08-20 11:13:28 | 000,336,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SearchProtocolHost.exe [2015-08-20 11:13:28 | 000,274,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\syncutil.dll [2015-08-20 11:13:28 | 000,159,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UserMgrProxy.dll [2015-08-20 11:13:28 | 000,148,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tetheringservice.dll [2015-08-20 11:13:28 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MbaeParserTask.exe [2015-08-20 11:13:28 | 000,080,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\stornvme.sys [2015-08-20 11:13:27 | 000,594,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Internal.Shell.Broker.dll [2015-08-20 11:13:27 | 000,483,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\OneDriveSettingSyncProvider.dll [2015-08-20 11:13:27 | 000,311,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppXDeploymentClient.dll [2015-08-20 11:13:27 | 000,269,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LocationFramework.dll [2015-08-20 11:13:27 | 000,046,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\msgpiowin32.sys [2015-08-20 11:13:26 | 000,442,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\storport.sys [2015-08-20 11:13:26 | 000,414,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentClient.dll [2015-08-20 11:13:26 | 000,393,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\dxgmms1.sys [2015-08-20 11:13:26 | 000,372,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\OneDriveSettingSyncProvider.dll [2015-08-20 11:13:26 | 000,243,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfps.dll [2015-08-20 11:13:26 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuautoappupdate.dll [2015-08-20 11:13:25 | 000,621,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\enterprisecsps.dll [2015-08-20 11:13:25 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tetheringclient.dll [2015-08-20 11:13:25 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tetheringclient.dll [2015-08-20 11:13:23 | 001,290,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Shell.dll [2015-08-20 11:13:23 | 000,911,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SharedStartModel.dll [2015-08-20 11:13:23 | 000,553,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\GamePanel.exe [2015-08-20 11:13:23 | 000,503,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tileobjserver.dll [2015-08-20 11:13:23 | 000,420,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\GamePanel.exe [2015-08-20 11:13:23 | 000,384,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LockAppBroker.dll [2015-08-20 11:13:23 | 000,324,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.Store.TestingFramework.dll [2015-08-20 11:13:23 | 000,311,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LockAppBroker.dll [2015-08-20 11:13:23 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.Store.TestingFramework.dll [2015-08-20 11:13:23 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SharedStartModelShim.dll [2015-08-20 11:13:23 | 000,162,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ReInfo.dll [2015-08-20 11:13:23 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Core.TextInput.dll [2015-08-20 11:13:23 | 000,123,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mssprxy.dll [2015-08-20 11:13:23 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LocationFrameworkInternalPS.dll [2015-08-20 11:13:22 | 000,282,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\VEEventDispatcher.dll [2015-08-20 11:13:22 | 000,253,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_UserAccount.dll [2015-08-20 11:13:22 | 000,217,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\VEEventDispatcher.dll [2015-08-20 11:13:22 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\VEDataLayerHelpers.dll [2015-08-20 11:13:22 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\VEDataLayerHelpers.dll [2015-08-12 08:44:44 | 000,812,008 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\FlashPlayerApp.exe [2015-08-12 08:44:44 | 000,178,152 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\FlashPlayerCPLApp.cpl [2015-08-12 08:35:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\Minidump [2015-08-09 14:36:31 | 000,000,000 | ---D | C] -- C:\Users\Magdalena\AppData\Local\NetworkTiles [2015-08-09 14:11:08 | 000,632,840 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\MetroIntelGenericUIFramework.dll [2015-08-09 14:11:08 | 000,527,504 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\IntelWiDiUMS64.exe [2015-08-09 14:11:08 | 000,340,552 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\IntelWiDiMCComp64.dll [2015-08-09 14:11:08 | 000,322,632 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\IntelWiDiUtils64.dll [2015-08-09 14:11:08 | 000,095,240 | ---- | C] (Khronos Group) -- C:\WINDOWS\SysWow64\Intel_OpenCL_ICD32.dll [2015-08-09 14:11:08 | 000,091,144 | ---- | C] (Khronos Group) -- C:\WINDOWS\SysNative\Intel_OpenCL_ICD64.dll [2015-08-09 14:11:07 | 002,036,744 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxLHM.dll [2015-08-09 14:11:07 | 001,792,384 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\iglhsip64.dll [2015-08-09 14:11:07 | 001,789,768 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysWow64\iglhsip32.dll [2015-08-09 14:11:07 | 001,574,408 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxcmjit64.dll [2015-08-09 14:11:07 | 001,165,320 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysWow64\igfxcmjit32.dll [2015-08-09 14:11:07 | 000,732,168 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxDH.dll [2015-08-09 14:11:07 | 000,406,536 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\IntelOpenCL64.dll [2015-08-09 14:11:07 | 000,394,760 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxOSP.dll [2015-08-09 14:11:07 | 000,359,944 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxDI.dll [2015-08-09 14:11:07 | 000,335,504 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxEM.exe [2015-08-09 14:11:07 | 000,308,744 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysWow64\IntelOpenCL32.dll [2015-08-09 14:11:07 | 000,290,960 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-08-09 14:11:07 | 000,257,168 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxHK.exe [2015-08-09 14:11:07 | 000,251,400 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxDTCM.dll [2015-08-09 14:11:07 | 000,231,328 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\iglhcp64.dll [2015-08-09 14:11:07 | 000,226,960 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxext.exe [2015-08-09 14:11:07 | 000,194,888 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysWow64\iglhcp32.dll [2015-08-09 14:11:07 | 000,192,008 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxCoIn_v4248.dll [2015-08-09 14:11:07 | 000,174,168 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxcmrt64.dll [2015-08-09 14:11:07 | 000,173,144 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igfx11cmrt64.dll [2015-08-09 14:11:07 | 000,152,648 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\IntelWiDiLogServer64.dll [2015-08-09 14:11:07 | 000,151,216 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysWow64\igfxcmrt32.dll [2015-08-09 14:11:07 | 000,150,192 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysWow64\igfx11cmrt32.dll [2015-08-09 14:11:07 | 000,045,960 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxexps.dll [2015-08-09 14:11:07 | 000,044,040 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysWow64\igfxexps32.dll [2015-08-09 14:10:54 | 037,010,872 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igdumdim64.dll [2015-08-09 14:10:54 | 004,452,872 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igdrcl64.dll [2015-08-09 14:10:54 | 003,880,968 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdrcl32.dll [2015-08-09 14:10:54 | 001,883,816 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igdmd64.dll [2015-08-09 14:10:53 | 005,476,360 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igdmcl64.dll [2015-08-09 14:10:53 | 003,810,312 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdmcl32.dll [2015-08-09 14:10:53 | 001,478,064 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdmd32.dll [2015-08-09 14:10:53 | 001,224,712 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igdfcl64.dll [2015-08-09 14:10:53 | 000,979,464 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdfcl32.dll [2015-08-09 14:10:53 | 000,211,056 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igdde64.dll [2015-08-09 14:10:53 | 000,170,464 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdde32.dll [2015-08-09 14:10:52 | 030,669,784 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igd11dxva64.dll [2015-08-09 14:10:52 | 005,173,264 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igd12umd64.dll [2015-08-09 14:10:52 | 005,152,480 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysWow64\igd12umd32.dll [2015-08-09 14:10:52 | 000,434,184 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igdbcl64.dll [2015-08-09 14:10:52 | 000,381,960 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdbcl32.dll [2015-08-09 14:10:52 | 000,180,744 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igdail64.dll [2015-08-09 14:10:52 | 000,162,312 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdail32.dll [2015-08-09 14:10:51 | 029,872,400 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysWow64\igd11dxva32.dll [2015-08-09 14:10:51 | 009,838,936 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysWow64\igd10iumd32.dll [2015-08-09 14:10:51 | 000,295,200 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igd10idpp64.dll [2015-08-09 14:10:51 | 000,280,680 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysWow64\igd10idpp32.dll [2015-08-09 14:10:50 | 013,001,664 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igc64.dll [2015-08-09 14:10:50 | 010,627,552 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysWow64\igc32.dll [2015-08-09 14:10:49 | 011,184,136 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\ig75icd64.dll [2015-08-09 14:10:48 | 008,502,792 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysWow64\ig75icd32.dll [2015-08-09 14:10:48 | 005,254,152 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\GfxResources.dll [2015-08-09 14:10:48 | 000,934,032 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\Gfxv4_0.exe [2015-08-09 14:10:48 | 000,930,960 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\Gfxv2_0.exe [2015-08-09 14:10:48 | 000,456,848 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\GfxUIEx.exe [2015-08-09 14:10:48 | 000,222,352 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\DPTopologyApp.exe [2015-08-09 14:10:48 | 000,221,840 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\DPTopologyAppv2_0.exe [2015-08-09 14:10:48 | 000,165,008 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\difx64.exe [2015-08-09 14:10:47 | 020,480,008 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\common_clang64.dll [2015-08-09 14:10:47 | 015,254,536 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysWow64\common_clang32.dll [2015-08-09 14:05:44 | 018,514,616 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvwgf2umx.dll [2015-08-09 14:05:44 | 015,892,904 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvwgf2um.dll [2015-08-09 14:05:40 | 030,518,928 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvoglv64.dll [2015-08-09 14:05:40 | 016,159,608 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvopencl.dll [2015-08-09 14:05:40 | 013,274,560 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvopencl.dll [2015-08-09 14:05:39 | 022,972,560 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvoglv32.dll [2015-08-09 14:05:39 | 001,061,192 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\NvIFR64.dll [2015-08-09 14:05:39 | 000,983,368 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\NvIFR.dll [2015-08-09 14:05:39 | 000,408,208 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\NvIFROpenGL.dll [2015-08-09 14:05:39 | 000,364,176 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\NvIFROpenGL.dll [2015-08-09 14:05:39 | 000,177,088 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvinitx.dll [2015-08-09 14:05:39 | 000,155,280 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvinit.dll [2015-08-09 14:05:36 | 016,009,800 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvd3dumx.dll [2015-08-09 14:05:36 | 001,898,312 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvdispco6435354.dll [2015-08-09 14:05:36 | 001,557,648 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvdispgenco6435354.dll [2015-08-09 14:05:36 | 001,052,488 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\NvFBC64.dll [2015-08-09 14:05:36 | 000,976,528 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\NvFBC.dll [2015-08-09 14:05:36 | 000,787,200 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvEncMFTH264.dll [2015-08-09 14:05:36 | 000,632,848 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvEncMFTH264.dll [2015-08-09 14:05:36 | 000,384,464 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvEncodeAPI64.dll [2015-08-09 14:05:36 | 000,314,936 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvEncodeAPI.dll [2015-08-09 14:05:35 | 014,510,584 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvcuda.dll [2015-08-09 14:05:35 | 012,972,336 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvd3dum.dll [2015-08-09 14:05:35 | 011,842,680 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvcuda.dll [2015-08-09 14:05:35 | 002,360,976 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvcuvid.dll [2015-08-09 14:05:35 | 002,163,856 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvcuvid.dll [2015-08-09 14:05:34 | 003,344,672 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvapi64.dll [2015-08-09 14:05:34 | 002,955,832 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvapi.dll [2015-08-09 13:14:32 | 000,206,848 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxCoIn_v4256.dll [2015-08-09 13:14:30 | 000,359,056 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxCUIService.exe [2015-08-09 13:14:28 | 006,308,936 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igdusc64.dll [2015-08-09 13:14:27 | 004,850,688 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdusc32.dll [2015-08-09 13:14:24 | 036,087,160 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdumdim32.dll [2015-08-09 13:14:19 | 006,270,424 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\drivers\igdkmd64.sys [2015-08-09 13:14:10 | 011,383,952 | ---- | C] (Intel Corporation) -- C:\WINDOWS\SysNative\igd10iumd64.dll [2015-08-09 13:13:24 | 004,527,872 | ---- | C] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\SysNative\drivers\rtwlane.sys [2015-08-09 13:13:07 | 000,000,000 | ---D | C] -- C:\Program Files\Elantech [2015-08-09 13:12:47 | 001,731,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WdfCoInstaller01009.dll [2015-08-09 13:12:40 | 000,081,640 | ---- | C] (ELAN Microelectronics Corp.) -- C:\WINDOWS\SysNative\ETDCoInstaller.dll [2015-08-09 13:12:39 | 000,477,784 | ---- | C] (ELAN Microelectronics Corp.) -- C:\WINDOWS\SysNative\drivers\ETD.sys [2015-08-09 13:12:07 | 014,241,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmp.dll [2015-08-09 13:12:05 | 006,488,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\windows.storage.dll [2015-08-09 13:12:04 | 012,589,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmp.dll [2015-08-09 13:12:04 | 006,305,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Search.dll [2015-08-09 13:11:58 | 005,118,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\windows.storage.dll [2015-08-09 13:11:56 | 004,398,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Search.dll [2015-08-09 13:11:49 | 001,135,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ClipUp.exe [2015-08-09 13:11:47 | 011,557,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinui.dll [2015-08-09 13:11:46 | 004,611,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\actxprxy.dll [2015-08-09 13:11:44 | 003,248,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.dll [2015-08-09 13:11:42 | 003,443,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UIRibbon.dll [2015-08-09 13:11:41 | 004,760,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ExplorerFrame.dll [2015-08-09 13:11:41 | 003,248,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msftedit.dll [2015-08-09 13:11:38 | 003,362,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msi.dll [2015-08-09 13:11:38 | 002,646,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.dll [2015-08-09 13:11:37 | 009,889,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinui.dll [2015-08-09 13:11:37 | 004,350,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ExplorerFrame.dll [2015-08-09 13:11:35 | 002,606,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msftedit.dll [2015-08-09 13:11:33 | 004,169,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UIRibbon.dll [2015-08-09 13:11:33 | 001,169,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dosvc.dll [2015-08-09 13:11:29 | 001,396,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LicenseManager.dll [2015-08-09 13:11:28 | 001,417,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lsasrv.dll [2015-08-09 13:11:28 | 000,679,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppContracts.dll [2015-08-09 13:11:27 | 000,816,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfmpeg2srcsnk.dll [2015-08-09 13:11:24 | 002,125,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinui.appcore.dll [2015-08-09 13:11:24 | 001,418,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RecoveryDrive.exe [2015-08-09 13:11:23 | 001,201,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Cred.dll [2015-08-09 13:11:23 | 000,823,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MrmCoreR.dll [2015-08-09 13:11:23 | 000,754,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Cred.dll [2015-08-09 13:11:22 | 001,611,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Immersive.dll [2015-08-09 13:11:22 | 001,521,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ActiveSyncProvider.dll [2015-08-09 13:11:22 | 001,031,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SensorDataService.exe [2015-08-09 13:11:22 | 000,925,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Unistore.dll [2015-08-09 13:11:22 | 000,808,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CoreMessaging.dll [2015-08-09 13:11:21 | 001,773,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Immersive.dll [2015-08-09 13:11:21 | 001,101,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MrmCoreR.dll [2015-08-09 13:11:21 | 000,966,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinapi.appcore.dll [2015-08-09 13:11:21 | 000,856,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ContactApis.dll [2015-08-09 13:11:21 | 000,713,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfmpeg2srcsnk.dll [2015-08-09 13:11:20 | 001,294,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winload.efi [2015-08-09 13:11:20 | 000,762,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinapi.appcore.dll [2015-08-09 13:11:20 | 000,658,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ClipSVC.dll [2015-08-09 13:11:20 | 000,485,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.BlockedShutdown.dll [2015-08-09 13:11:19 | 001,411,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Editing.dll [2015-08-09 13:11:19 | 001,203,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Unistore.dll [2015-08-09 13:11:19 | 000,850,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\comdlg32.dll [2015-08-09 13:11:19 | 000,578,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winlogon.exe [2015-08-09 13:11:18 | 001,714,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinui.appcore.dll [2015-08-09 13:11:18 | 001,203,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Bluetooth.dll [2015-08-09 13:11:18 | 001,123,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winload.exe [2015-08-09 13:11:18 | 000,584,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Sensors.dll [2015-08-09 13:11:18 | 000,441,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppContracts.dll [2015-08-09 13:11:17 | 002,147,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d3d9.dll [2015-08-09 13:11:17 | 000,677,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wuapi.dll [2015-08-09 13:11:15 | 001,018,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winresume.efi [2015-08-09 13:11:15 | 000,962,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LicenseManager.dll [2015-08-09 13:11:14 | 000,783,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuapi.dll [2015-08-09 13:11:14 | 000,322,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.BlockedShutdown.dll [2015-08-09 13:11:13 | 001,591,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gdi32.dll [2015-08-09 13:11:13 | 000,859,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\modernexecserver.dll [2015-08-09 13:11:13 | 000,623,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ContactApis.dll [2015-08-09 13:11:13 | 000,542,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SearchFolder.dll [2015-08-09 13:11:13 | 000,437,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Sensors.dll [2015-08-09 13:11:12 | 000,828,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Bluetooth.dll [2015-08-09 13:11:12 | 000,670,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ieproxy.dll [2015-08-09 13:11:11 | 001,561,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winmde.dll [2015-08-09 13:11:11 | 001,043,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Editing.dll [2015-08-09 13:11:11 | 000,841,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Import.dll [2015-08-09 13:11:11 | 000,752,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\efscore.dll [2015-08-09 13:11:11 | 000,518,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NotificationController.dll [2015-08-09 13:11:11 | 000,407,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CredProvDataModel.dll [2015-08-09 13:11:10 | 001,200,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rpcrt4.dll [2015-08-09 13:11:10 | 000,980,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SecConfig.efi [2015-08-09 13:11:10 | 000,872,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntshrui.dll [2015-08-09 13:11:10 | 000,335,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CredProvDataModel.dll [2015-08-09 13:11:09 | 000,858,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winresume.exe [2015-08-09 13:11:09 | 000,359,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ncsi.dll [2015-08-09 13:11:08 | 000,695,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wimgapi.dll [2015-08-09 13:11:08 | 000,584,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wimgapi.dll [2015-08-09 13:11:08 | 000,575,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Import.dll [2015-08-09 13:11:08 | 000,465,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MessagingDataModel2.dll [2015-08-09 13:11:08 | 000,303,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MBMediaManager.dll [2015-08-09 13:11:08 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\OmaDmAgent.dll [2015-08-09 13:11:07 | 000,869,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapControlCore.dll [2015-08-09 13:11:07 | 000,589,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\efscore.dll [2015-08-09 13:11:07 | 000,414,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.BioFeedback.dll [2015-08-09 13:11:07 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\unenrollhook.dll [2015-08-09 13:11:06 | 001,562,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmpmde.dll [2015-08-09 13:11:06 | 000,251,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SensorsApi.dll [2015-08-09 13:11:05 | 007,569,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mos.dll [2015-08-09 13:11:05 | 001,043,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfmp4srcsnk.dll [2015-08-09 13:11:05 | 000,934,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\refsv1.sys [2015-08-09 13:11:05 | 000,425,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hal.dll [2015-08-09 13:11:05 | 000,283,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.BioFeedback.dll [2015-08-09 13:11:04 | 000,521,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PsmServiceExtHost.dll [2015-08-09 13:11:04 | 000,366,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuuhext.dll [2015-08-09 13:11:04 | 000,356,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\stobject.dll [2015-08-09 13:11:04 | 000,310,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SensorsApi.dll [2015-08-09 13:11:04 | 000,242,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\updatehandlers.dll [2015-08-09 13:11:04 | 000,208,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\srumsvc.dll [2015-08-09 13:11:03 | 001,356,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\winmde.dll [2015-08-09 13:11:03 | 000,232,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DevicesFlowBroker.dll [2015-08-09 13:11:02 | 000,590,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MessagingDataModel2.dll [2015-08-09 13:11:02 | 000,569,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MCRecvSrc.dll [2015-08-09 13:11:01 | 000,510,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CoreMessaging.dll [2015-08-09 13:11:01 | 000,501,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AudioEng.dll [2015-08-09 13:11:01 | 000,343,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usocore.dll [2015-08-09 13:11:01 | 000,335,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wintrust.dll [2015-08-09 13:11:01 | 000,294,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ieproxy.dll [2015-08-09 13:11:01 | 000,287,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\provhandlers.dll [2015-08-09 13:11:01 | 000,179,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\srumsvc.dll [2015-08-09 13:11:00 | 001,025,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfsrcsnk.dll [2015-08-09 13:11:00 | 000,877,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfmp4srcsnk.dll [2015-08-09 13:11:00 | 000,846,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpncore.dll [2015-08-09 13:11:00 | 000,654,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PlayToManager.dll [2015-08-09 13:11:00 | 000,480,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MCRecvSrc.dll [2015-08-09 13:11:00 | 000,329,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusUpdateHandlers.dll [2015-08-09 13:11:00 | 000,263,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DisplayManager.dll [2015-08-09 13:10:59 | 001,420,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UserDataService.dll [2015-08-09 13:10:59 | 000,589,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\uxtheme.dll [2015-08-09 13:10:59 | 000,271,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ConsoleLogon.dll [2015-08-09 13:10:59 | 000,191,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DisplayManager.dll [2015-08-09 13:10:59 | 000,185,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\psmsrv.dll [2015-08-09 13:10:58 | 000,527,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AudioSes.dll [2015-08-09 13:10:58 | 000,333,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MFPlay.dll [2015-08-09 13:10:58 | 000,150,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusNotification.exe [2015-08-09 13:10:58 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Cortana.OneCore.dll [2015-08-09 13:10:57 | 000,680,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.Connectivity.dll [2015-08-09 13:10:57 | 000,503,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Networking.Connectivity.dll [2015-08-09 13:10:57 | 000,268,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\provengine.dll [2015-08-09 13:10:57 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SensorService.dll [2015-08-09 13:10:57 | 000,193,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EnterpriseModernAppMgmtCSP.dll [2015-08-09 13:10:57 | 000,181,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\shutdownux.dll [2015-08-09 13:10:57 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sendmail.dll [2015-08-09 13:10:56 | 000,430,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sppcomapi.dll [2015-08-09 13:10:56 | 000,279,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\systemcpl.dll [2015-08-09 13:10:56 | 000,275,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\bcastdvr.exe [2015-08-09 13:10:56 | 000,120,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\omadmclient.exe [2015-08-09 13:10:56 | 000,104,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sendmail.dll [2015-08-09 13:10:55 | 005,076,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\BingMaps.dll [2015-08-09 13:10:55 | 000,291,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\systemcpl.dll [2015-08-09 13:10:55 | 000,290,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wininit.exe [2015-08-09 13:10:55 | 000,252,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ContentDeliveryManager.Utilities.dll [2015-08-09 13:10:55 | 000,190,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ReInfo.dll [2015-08-09 13:10:54 | 000,599,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpnapps.dll [2015-08-09 13:10:54 | 000,342,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bcastdvr.exe [2015-08-09 13:10:54 | 000,280,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AudioEndpointBuilder.dll [2015-08-09 13:10:54 | 000,208,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxAllUserStore.dll [2015-08-09 13:10:54 | 000,169,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\storewuauth.dll [2015-08-09 13:10:54 | 000,107,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dwmapi.dll [2015-08-09 13:10:54 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ACPBackgroundManagerPolicy.dll [2015-08-09 13:10:54 | 000,061,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\dam.sys [2015-08-09 13:10:53 | 006,101,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mos.dll [2015-08-09 13:10:53 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BootMenuUX.dll [2015-08-09 13:10:53 | 000,181,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppxAllUserStore.dll [2015-08-09 13:10:53 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\UcmUcsi.sys [2015-08-09 13:10:52 | 000,497,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PlayToManager.dll [2015-08-09 13:10:52 | 000,473,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wpnapps.dll [2015-08-09 13:10:52 | 000,421,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Internal.Bluetooth.dll [2015-08-09 13:10:52 | 000,316,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ConhostV2.dll [2015-08-09 13:10:52 | 000,285,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MFPlay.dll [2015-08-09 13:10:52 | 000,179,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_SignInOptions.dll [2015-08-09 13:10:52 | 000,167,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_Privacy.dll [2015-08-09 13:10:52 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Cortana.ProxyStub.dll [2015-08-09 13:10:52 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusNotificationUx.exe [2015-08-09 13:10:52 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\calc.exe [2015-08-09 13:10:51 | 000,896,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfsrcsnk.dll [2015-08-09 13:10:51 | 000,097,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bcd.dll [2015-08-09 13:10:51 | 000,082,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\bcd.dll [2015-08-09 13:10:51 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\calc.exe [2015-08-09 13:10:50 | 000,630,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wer.dll [2015-08-09 13:10:50 | 000,584,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UIRibbonRes.dll [2015-08-09 13:10:50 | 000,487,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfmkvsrcsnk.dll [2015-08-09 13:10:50 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InstallAgent.exe [2015-08-09 13:10:50 | 000,137,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\VEStoreEventHandlers.dll [2015-08-09 13:10:50 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hmkd.dll [2015-08-09 13:10:49 | 000,632,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dxgi.dll [2015-08-09 13:10:49 | 000,494,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\StoreAgent.dll [2015-08-09 13:10:49 | 000,187,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\provisioningcsp.dll [2015-08-09 13:10:49 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bcdboot.exe [2015-08-09 13:10:49 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\usbser.sys [2015-08-09 13:10:49 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\omadmprc.exe [2015-08-09 13:10:49 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\hmkd.dll [2015-08-09 13:10:48 | 000,521,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wimserv.exe [2015-08-09 13:10:48 | 000,446,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapConfiguration.dll [2015-08-09 13:10:48 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wcmcsp.dll [2015-08-09 13:10:48 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\spbcd.dll [2015-08-09 13:10:48 | 000,080,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxSysprep.dll [2015-08-09 13:10:48 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\setbcdlocale.dll [2015-08-09 13:10:47 | 000,416,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bcdedit.exe [2015-08-09 13:10:47 | 000,328,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MapConfiguration.dll [2015-08-09 13:10:47 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Internal.Bluetooth.dll [2015-08-09 13:10:47 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fwpolicyiomgr.dll [2015-08-09 13:10:47 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SensorsNativeApi.V2.dll [2015-08-09 13:10:47 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\spbcd.dll [2015-08-09 13:10:47 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Cortana.PAL.Desktop.dll [2015-08-09 13:10:47 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LicenseManagerShellext.exe [2015-08-09 13:10:46 | 007,051,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BingMaps.dll [2015-08-09 13:10:46 | 004,791,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9.dll [2015-08-09 13:10:46 | 000,163,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fwpolicyiomgr.dll [2015-08-09 13:10:46 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NotificationControllerPS.dll [2015-08-09 13:10:45 | 001,061,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\reseteng.dll [2015-08-09 13:10:45 | 000,832,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapsStore.dll [2015-08-09 13:10:45 | 000,373,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfmkvsrcsnk.dll [2015-08-09 13:10:45 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SensorsNativeApi.V2.dll [2015-08-09 13:10:44 | 000,799,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpccpl.dll [2015-08-09 13:10:44 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\VoiceActivationManager.dll [2015-08-09 13:10:44 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\VoiceActivationManager.dll [2015-08-09 13:10:42 | 000,584,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UIRibbonRes.dll [2015-08-09 13:10:42 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\bthhfenum.sys [2015-08-09 13:10:42 | 000,045,568 | ---- | C] (Adobe Systems) -- C:\WINDOWS\SysNative\atmlib.dll [2015-08-09 13:10:42 | 000,037,376 | ---- | C] (Adobe Systems) -- C:\WINDOWS\SysWow64\atmlib.dll [2015-08-09 12:50:03 | 000,000,000 | ---D | C] -- C:\WINDOWS\SysNative\SleepStudy [2015-08-09 12:18:24 | 000,895,256 | ---- | C] (Realtek ) -- C:\WINDOWS\SysNative\drivers\rt640x64.sys [2015-08-09 12:18:24 | 000,091,272 | ---- | C] (Realtek Semiconductor Corporation) -- C:\WINDOWS\SysNative\RtNicProp64.dll [2015-08-09 11:45:08 | 000,000,000 | R--D | C] -- C:\Users\Magdalena\OneDrive [2015-08-08 04:07:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft OneDrive [2015-08-08 04:06:29 | 000,000,000 | ---D | C] -- C:\Users\Magdalena\AppData\Local\Publishers [2015-08-08 04:05:41 | 000,000,000 | ---D | C] -- C:\Users\Magdalena\AppData\Local\Comms [2015-08-08 04:05:38 | 009,890,832 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\SysWow64\RsCRIcon.dll [2015-08-08 04:05:38 | 000,083,984 | ---- | C] (Realtek Semiconductor.) -- C:\WINDOWS\SysNative\RtCRX64.dll [2015-08-08 04:05:20 | 000,000,000 | ---D | C] -- C:\Users\Magdalena\AppData\Local\TileDataLayer [2015-08-07 23:55:28 | 000,000,000 | ---D | C] -- C:\WINDOWS\Panther [2015-08-07 23:51:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\SysWow64\XPSViewer [2015-08-07 23:51:29 | 000,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies [2015-08-07 23:51:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Reference Assemblies [2015-08-07 23:51:29 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild [2015-08-07 23:51:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSBuild [2015-08-07 23:51:03 | 000,035,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TsWpfWrp.exe [2015-08-07 23:51:02 | 000,778,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PresentationNative_v0300.dll [2015-08-07 23:51:02 | 000,102,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PresentationCFFRasterizerNative_v0300.dll [2015-08-07 23:50:58 | 001,166,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PresentationNative_v0300.dll [2015-08-07 23:50:58 | 000,124,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PresentationCFFRasterizerNative_v0300.dll [2015-08-07 23:50:58 | 000,035,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TsWpfWrp.exe [2015-08-07 23:29:01 | 000,000,000 | -HSD | C] -- C:\ProgramData\Szablony [2015-08-07 23:29:01 | 000,000,000 | -HSD | C] -- C:\ProgramData\Pulpit [2015-08-07 23:29:01 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moje wideo [2015-08-07 23:29:01 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moje obrazy [2015-08-07 23:29:01 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moja muzyka [2015-08-07 23:29:01 | 000,000,000 | -HSD | C] -- C:\ProgramData\Menu Start [2015-08-07 23:29:01 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumenty [2015-08-07 23:29:01 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dane aplikacji [2015-08-07 23:28:58 | 000,000,000 | -HSD | C] -- C:\Recovery [2015-08-07 23:15:17 | 002,718,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PrintConfig.dll [2015-08-07 23:03:23 | 000,000,000 | --SD | C] -- C:\Users\Magdalena\AppData\Roaming\Microsoft [2015-08-07 23:03:23 | 000,000,000 | R-SD | C] -- C:\Users\Magdalena\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell [2015-08-07 23:03:23 | 000,000,000 | R--D | C] -- C:\Users\Magdalena\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools [2015-08-07 23:03:23 | 000,000,000 | R--D | C] -- C:\Users\Magdalena\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories [2015-08-07 23:03:23 | 000,000,000 | R--D | C] -- C:\Users\Magdalena\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility [2015-08-07 23:03:23 | 000,000,000 | -HSD | C] -- C:\Users\Magdalena\Ustawienia lokalne [2015-08-07 23:03:23 | 000,000,000 | -HSD | C] -- C:\Users\Magdalena\AppData\Local\Temporary Internet Files [2015-08-07 23:03:23 | 000,000,000 | -HSD | C] -- C:\Users\Magdalena\Szablony [2015-08-07 23:03:23 | 000,000,000 | -HSD | C] -- C:\Users\Magdalena\SendTo [2015-08-07 23:03:23 | 000,000,000 | -HSD | C] -- C:\Users\Magdalena\Recent [2015-08-07 23:03:23 | 000,000,000 | -HSD | C] -- C:\Users\Magdalena\PrintHood [2015-08-07 23:03:23 | 000,000,000 | -HSD | C] -- C:\Users\Magdalena\NetHood [2015-08-07 23:03:23 | 000,000,000 | -HSD | C] -- C:\Users\Magdalena\Documents\Moje wideo [2015-08-07 23:03:23 | 000,000,000 | -HSD | C] -- C:\Users\Magdalena\Documents\Moje obrazy [2015-08-07 23:03:23 | 000,000,000 | -HSD | C] -- C:\Users\Magdalena\Moje dokumenty [2015-08-07 23:03:23 | 000,000,000 | -HSD | C] -- C:\Users\Magdalena\Documents\Moja muzyka [2015-08-07 23:03:23 | 000,000,000 | -HSD | C] -- C:\Users\Magdalena\Menu Start [2015-08-07 23:03:23 | 000,000,000 | -HSD | C] -- C:\Users\Magdalena\AppData\Local\Historia [2015-08-07 23:03:23 | 000,000,000 | -HSD | C] -- C:\Users\Magdalena\Dane aplikacji [2015-08-07 23:03:23 | 000,000,000 | -HSD | C] -- C:\Users\Magdalena\AppData\Local\Dane aplikacji [2015-08-07 23:03:23 | 000,000,000 | -HSD | C] -- C:\Users\Magdalena\Cookies [2015-08-07 23:03:23 | 000,000,000 | -H-D | C] -- C:\Users\Magdalena\AppData [2015-08-07 23:03:23 | 000,000,000 | ---D | C] -- C:\Users\Magdalena\AppData\Local\Temp [2015-08-07 23:03:23 | 000,000,000 | ---D | C] -- C:\Users\Magdalena\AppData\Local\Microsoft [2015-08-07 23:03:23 | 000,000,000 | ---D | C] -- C:\Users\Magdalena\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance [2015-08-07 23:00:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Conexant [2015-08-07 23:00:03 | 000,000,000 | ---D | C] -- C:\Program Files\CONEXANT [2015-08-07 22:56:44 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch [6 C:\WINDOWS\SysNative\*.tmp files -> C:\WINDOWS\SysNative\*.tmp -> ] [2 C:\WINDOWS\SysNative\drivers\*.tmp files -> C:\WINDOWS\SysNative\drivers\*.tmp -> ] [1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files - Modified Within 60 Days ==========[/color] [2015-09-29 21:02:14 | 000,016,148 | ---- | M] () -- C:\WINDOWS\SysNative\LENA_Magdalena_HistoryPrediction.bin [2015-09-29 18:23:02 | 000,000,954 | ---- | M] () -- C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-1545690670-3743458166-3130793004-1001UA.job [2015-09-29 18:11:00 | 000,001,362 | ---- | M] () -- C:\WINDOWS\tasks\PTQQF.job [2015-09-29 18:11:00 | 000,001,360 | ---- | M] () -- C:\WINDOWS\tasks\QGPO.job [2015-09-29 18:02:30 | 000,141,363 | ---- | M] () -- C:\Users\Magdalena\Desktop\OTL.rar [2015-09-29 17:58:19 | 000,067,584 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2015-09-29 11:19:56 | 1668,923,392 | -HS- | M] () -- C:\hiberfil.sys [2015-09-28 21:23:01 | 000,000,932 | ---- | M] () -- C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-1545690670-3743458166-3130793004-1001Core.job [2015-09-28 20:36:44 | 000,113,880 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\SysNative\drivers\MBAMSwissArmy.sys [2015-09-28 04:53:08 | 000,000,093 | ---- | M] () -- C:\Users\Magdalena\AppData\Roaming\sp_data.sys [2015-09-28 04:52:00 | 000,000,180 | ---- | M] () -- C:\WINDOWS\SysNative\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat [2015-09-28 04:51:13 | 000,349,832 | ---- | M] () -- C:\WINDOWS\SysNative\FNTCACHE.DAT [2015-09-28 04:50:59 | 268,435,456 | -HS- | M] () -- C:\swapfile.sys [2015-09-28 04:49:07 | 000,001,820 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Samsung Drive Manager Real-Time.lnk [2015-09-28 04:49:06 | 000,002,109 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2015-09-28 04:48:52 | 000,002,250 | ---- | M] () -- C:\Users\Public\Desktop\Kaspersky Anti-Virus.lnk [2015-09-28 04:48:52 | 000,001,397 | ---- | M] () -- C:\Users\Public\Desktop\Centrum obsługi HP.lnk [2015-09-28 04:48:52 | 000,001,257 | ---- | M] () -- C:\Users\Public\Desktop\Internet Manager.lnk [2015-09-28 04:48:52 | 000,001,131 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk [2015-09-28 04:48:52 | 000,001,025 | ---- | M] () -- C:\Users\Public\Desktop\Trojan Killer.lnk [2015-09-28 04:48:52 | 000,000,903 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk [2015-09-28 04:48:52 | 000,000,885 | ---- | M] () -- C:\Users\Public\Desktop\Battle.net.lnk [2015-09-28 04:48:52 | 000,000,818 | ---- | M] () -- C:\Users\Public\Desktop\Heroes of the Storm.lnk [2015-09-28 04:48:52 | 000,000,736 | ---- | M] () -- C:\Users\Public\Desktop\StarCraft II.lnk [2015-09-28 04:48:52 | 000,000,702 | ---- | M] () -- C:\Users\Public\Desktop\Ocena Opisowa.lnk [2015-09-28 04:48:25 | 000,001,844 | ---- | M] () -- C:\Users\Magdalena\Desktop\Samsung Drive Manager.lnk [2015-09-28 04:48:25 | 000,000,823 | ---- | M] () -- C:\Users\Magdalena\Desktop\GG dysk.lnk [2015-09-27 19:34:51 | 000,012,872 | ---- | M] (SurfRight B.V.) -- C:\WINDOWS\SysNative\bootdelete.exe [2015-09-27 19:13:55 | 000,003,934 | ---- | M] () -- C:\WINDOWS\SysNative\.crusader [2015-09-27 17:50:00 | 002,952,720 | ---- | M] (Conexant Systems, Inc.) -- C:\WINDOWS\SysNative\UCI64A93.dll [2015-09-27 17:49:59 | 000,306,325 | ---- | M] () -- C:\WINDOWS\SysNative\drivers\MicEQ.ini [2015-09-27 17:49:59 | 000,120,214 | ---- | M] () -- C:\WINDOWS\SysNative\drivers\SoftEQ.ini [2015-09-27 17:49:59 | 000,030,893 | ---- | M] () -- C:\WINDOWS\SysNative\drivers\Mixer.ini [2015-09-27 17:49:59 | 000,030,781 | ---- | M] () -- C:\WINDOWS\SysNative\drivers\MicGain.ini [2015-09-27 17:49:59 | 000,027,477 | ---- | M] () -- C:\WINDOWS\SysNative\drivers\MicMinMax.ini [2015-09-27 17:49:59 | 000,002,912 | ---- | M] () -- C:\WINDOWS\SysNative\drivers\OrVerbs.ini [2015-09-27 17:49:58 | 000,961,960 | ---- | M] (Conexant Systems Inc.) -- C:\WINDOWS\SysNative\CX64BP11.dll [2015-09-27 17:49:58 | 000,006,449 | ---- | M] () -- C:\WINDOWS\SysNative\drivers\HeadsetCtrl.ini [2015-09-27 17:49:58 | 000,003,245 | ---- | M] () -- C:\WINDOWS\SysNative\drivers\FXMisc.ini [2015-09-27 17:49:57 | 000,001,816 | ---- | M] () -- C:\WINDOWS\SysNative\drivers\altmixer.ini [2015-09-27 15:11:44 | 037,103,381 | ---- | M] () -- C:\Users\Magdalena\Desktop\20150927_151118.mp4 [2015-09-27 15:01:26 | 029,489,179 | ---- | M] () -- C:\Users\Magdalena\Desktop\20150927_150102.mp4 [2015-09-27 14:27:35 | 003,392,912 | ---- | M] () -- C:\Users\Magdalena\Desktop\20150927_142731.mp4 [2015-09-23 08:35:05 | 000,000,009 | ---- | M] () -- C:\Users\Magdalena\AppData\Roaming\update.dat [2015-09-22 18:14:16 | 000,017,568 | ---- | M] (Windows (R) Win 7 DDK provider) -- C:\WINDOWS\SysNative\drivers\gtkdrv.sys [2015-09-16 23:39:09 | 001,836,100 | ---- | M] () -- C:\WINDOWS\SysNative\PerfStringBackup.INI [2015-09-16 23:39:09 | 000,813,762 | ---- | M] () -- C:\WINDOWS\SysNative\perfh015.dat [2015-09-16 23:39:09 | 000,731,332 | ---- | M] () -- C:\WINDOWS\SysNative\perfh009.dat [2015-09-16 23:39:09 | 000,156,260 | ---- | M] () -- C:\WINDOWS\SysNative\perfc015.dat [2015-09-16 23:39:09 | 000,138,162 | ---- | M] () -- C:\WINDOWS\SysNative\perfc009.dat [2015-09-15 18:12:10 | 000,812,008 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\FlashPlayerApp.exe [2015-09-15 18:12:10 | 000,178,152 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\FlashPlayerCPLApp.cpl [2015-08-19 06:50:51 | 000,609,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ci.dll [2015-08-13 06:23:47 | 002,178,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentServer.dll [2015-08-13 06:22:26 | 002,093,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlidsvc.dll [2015-08-13 06:20:39 | 000,414,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentClient.dll [2015-08-13 06:17:58 | 001,795,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentExtensions.dll [2015-08-13 05:53:21 | 000,311,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppXDeploymentClient.dll [2015-08-12 08:44:52 | 000,000,266 | RHS- | M] () -- C:\ProgramData\ntuser.pol [2015-08-11 12:04:24 | 002,462,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfcore.dll [2015-08-11 12:04:23 | 004,532,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe [2015-08-11 12:04:15 | 001,087,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfplat.dll [2015-08-11 12:03:20 | 008,021,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntoskrnl.exe [2015-08-11 12:03:09 | 000,442,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\storport.sys [2015-08-11 12:02:57 | 000,554,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\directmanipulation.dll [2015-08-11 12:02:56 | 000,080,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\stornvme.sys [2015-08-11 12:02:49 | 000,292,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LockAppHost.exe [2015-08-11 11:52:49 | 000,993,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ReAgent.dll [2015-08-11 11:50:47 | 001,643,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\diagtrack.dll [2015-08-11 11:40:22 | 004,048,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\explorer.exe [2015-08-11 11:40:12 | 000,918,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfplat.dll [2015-08-11 11:40:08 | 002,151,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfcore.dll [2015-08-11 11:38:22 | 000,454,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\directmanipulation.dll [2015-08-11 11:37:48 | 000,243,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LockAppHost.exe [2015-08-11 11:26:03 | 000,845,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ReAgent.dll [2015-08-11 11:23:59 | 016,706,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Xaml.dll [2015-08-11 11:22:04 | 021,875,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edgehtml.dll [2015-08-11 11:21:13 | 000,148,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tetheringservice.dll [2015-08-11 11:21:04 | 000,052,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tetheringclient.dll [2015-08-11 11:20:42 | 002,224,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NetworkMobileSettings.dll [2015-08-11 11:20:02 | 000,483,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\OneDriveSettingSyncProvider.dll [2015-08-11 11:19:45 | 000,235,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_Notifications.dll [2015-08-11 11:18:44 | 000,235,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UserMgrProxy.dll [2015-08-11 11:16:32 | 002,416,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MFMediaEngine.dll [2015-08-11 11:14:02 | 000,404,480 | ---- | M] () -- C:\WINDOWS\SysNative\diagtrack_wininternal.dll [2015-08-11 11:13:42 | 000,413,184 | ---- | M] () -- C:\WINDOWS\SysNative\diagtrack_win.dll [2015-08-11 11:11:40 | 002,446,336 | ---- | M] () -- C:\WINDOWS\SysNative\InputService.dll [2015-08-11 11:11:18 | 000,553,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\GamePanel.exe [2015-08-11 11:10:47 | 000,293,376 | ---- | M] () -- C:\WINDOWS\SysNative\TextInputFramework.dll [2015-08-11 11:10:12 | 000,324,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.Store.TestingFramework.dll [2015-08-11 11:10:06 | 000,778,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.Store.dll [2015-08-11 11:09:55 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuautoappupdate.dll [2015-08-11 11:08:04 | 000,893,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MbaeApiPublic.dll [2015-08-11 11:08:04 | 000,563,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MbaeApi.dll [2015-08-11 11:07:52 | 000,593,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wcmsvc.dll [2015-08-11 11:07:44 | 000,115,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MbaeParserTask.exe [2015-08-11 11:06:19 | 007,523,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Chakra.dll [2015-08-11 11:05:48 | 000,342,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LocationGeofences.dll [2015-08-11 11:05:27 | 000,269,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LocationFramework.dll [2015-08-11 11:05:23 | 000,078,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LocationFrameworkInternalPS.dll [2015-08-11 11:05:20 | 000,137,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LocationPermissions.dll [2015-08-11 11:05:10 | 000,996,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RDXService.dll [2015-08-11 11:05:07 | 003,527,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tquery.dll [2015-08-11 11:03:09 | 002,558,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mssrch.dll [2015-08-11 11:02:53 | 000,186,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cloudAP.dll [2015-08-11 11:02:15 | 000,621,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\enterprisecsps.dll [2015-08-11 11:02:08 | 003,588,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kfull.sys [2015-08-11 11:02:03 | 001,890,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dwmcore.dll [2015-08-11 11:01:38 | 001,334,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UIAutomationCore.dll [2015-08-11 11:00:45 | 000,336,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SearchProtocolHost.exe [2015-08-11 11:00:06 | 000,274,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\syncutil.dll [2015-08-11 10:59:51 | 000,123,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mssprxy.dll [2015-08-11 10:59:33 | 000,042,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tetheringclient.dll [2015-08-11 10:59:27 | 000,642,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdbui.dll [2015-08-11 10:58:11 | 000,372,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\OneDriveSettingSyncProvider.dll [2015-08-11 10:57:51 | 013,024,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Xaml.dll [2015-08-11 10:57:31 | 000,971,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\UMDF\WpdMtpDr.dll [2015-08-11 10:57:12 | 000,159,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UserMgrProxy.dll [2015-08-11 10:51:35 | 001,916,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MFMediaEngine.dll [2015-08-11 10:51:33 | 001,823,232 | ---- | M] () -- C:\WINDOWS\SysWow64\InputService.dll [2015-08-11 10:50:59 | 000,131,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Core.TextInput.dll [2015-08-11 10:50:58 | 000,200,704 | ---- | M] () -- C:\WINDOWS\SysWow64\TextInputFramework.dll [2015-08-11 10:50:47 | 000,420,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\GamePanel.exe [2015-08-11 10:49:50 | 000,586,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.Store.dll [2015-08-11 10:49:30 | 000,247,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.Store.TestingFramework.dll [2015-08-11 10:48:25 | 000,671,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MbaeApiPublic.dll [2015-08-11 10:47:09 | 000,448,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MbaeApi.dll [2015-08-11 10:45:48 | 018,805,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\edgehtml.dll [2015-08-11 10:43:39 | 002,748,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tquery.dll [2015-08-11 10:42:33 | 005,454,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Chakra.dll [2015-08-11 10:40:45 | 001,593,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dwmcore.dll [2015-08-11 10:40:32 | 001,964,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mssrch.dll [2015-08-11 10:40:12 | 001,112,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UIAutomationCore.dll [2015-08-11 10:38:43 | 000,162,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ReInfo.dll [2015-08-09 14:13:07 | 000,000,200 | ---- | M] () -- C:\WINDOWS\SysNative\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat [2015-08-09 14:11:08 | 000,632,840 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\MetroIntelGenericUIFramework.dll [2015-08-09 14:11:08 | 000,527,504 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\IntelWiDiUMS64.exe [2015-08-09 14:11:08 | 000,340,552 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\IntelWiDiMCComp64.dll [2015-08-09 14:11:08 | 000,322,632 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\IntelWiDiUtils64.dll [2015-08-09 14:11:08 | 000,095,240 | ---- | M] (Khronos Group) -- C:\WINDOWS\SysWow64\OpenCL.DLL [2015-08-09 14:11:08 | 000,095,240 | ---- | M] (Khronos Group) -- C:\WINDOWS\SysWow64\Intel_OpenCL_ICD32.dll [2015-08-09 14:11:08 | 000,091,144 | ---- | M] (Khronos Group) -- C:\WINDOWS\SysNative\OpenCL.DLL [2015-08-09 14:11:08 | 000,091,144 | ---- | M] (Khronos Group) -- C:\WINDOWS\SysNative\Intel_OpenCL_ICD64.dll [2015-08-09 14:11:07 | 002,036,744 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxLHM.dll [2015-08-09 14:11:07 | 001,792,384 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\iglhsip64.dll [2015-08-09 14:11:07 | 001,789,768 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\iglhsip32.dll [2015-08-09 14:11:07 | 001,574,408 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxcmjit64.dll [2015-08-09 14:11:07 | 001,165,320 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igfxcmjit32.dll [2015-08-09 14:11:07 | 001,015,952 | ---- | M] () -- C:\WINDOWS\SysNative\igfxSDK.exe [2015-08-09 14:11:07 | 000,732,168 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxDH.dll [2015-08-09 14:11:07 | 000,597,648 | ---- | M] () -- C:\WINDOWS\SysNative\IntelCpHDCPSvc.exe [2015-08-09 14:11:07 | 000,406,536 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\IntelOpenCL64.dll [2015-08-09 14:11:07 | 000,404,112 | ---- | M] () -- C:\WINDOWS\SysNative\igfxTray.exe [2015-08-09 14:11:07 | 000,394,760 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxOSP.dll [2015-08-09 14:11:07 | 000,359,944 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxDI.dll [2015-08-09 14:11:07 | 000,359,056 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxCUIService.exe [2015-08-09 14:11:07 | 000,335,504 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxEM.exe [2015-08-09 14:11:07 | 000,308,744 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\IntelOpenCL32.dll [2015-08-09 14:11:07 | 000,290,960 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-08-09 14:11:07 | 000,264,712 | ---- | M] () -- C:\WINDOWS\SysNative\igfxCPL.cpl [2015-08-09 14:11:07 | 000,257,168 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxHK.exe [2015-08-09 14:11:07 | 000,251,400 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxDTCM.dll [2015-08-09 14:11:07 | 000,231,328 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\iglhcp64.dll [2015-08-09 14:11:07 | 000,226,960 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxext.exe [2015-08-09 14:11:07 | 000,194,888 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\iglhcp32.dll [2015-08-09 14:11:07 | 000,192,008 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxCoIn_v4248.dll [2015-08-09 14:11:07 | 000,174,168 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxcmrt64.dll [2015-08-09 14:11:07 | 000,173,144 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfx11cmrt64.dll [2015-08-09 14:11:07 | 000,152,648 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\IntelWiDiLogServer64.dll [2015-08-09 14:11:07 | 000,151,216 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igfxcmrt32.dll [2015-08-09 14:11:07 | 000,150,192 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igfx11cmrt32.dll [2015-08-09 14:11:07 | 000,098,824 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxSDKLibv2_0.dll [2015-08-09 14:11:07 | 000,094,728 | ---- | M] () -- C:\WINDOWS\SysNative\igfxCUIServicePS.dll [2015-08-09 14:11:07 | 000,091,656 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxSDKLib.dll [2015-08-09 14:11:07 | 000,082,440 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxDHLibv2_0.dll [2015-08-09 14:11:07 | 000,073,224 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxDHLib.dll [2015-08-09 14:11:07 | 000,045,960 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxexps.dll [2015-08-09 14:11:07 | 000,044,040 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igfxexps32.dll [2015-08-09 14:11:07 | 000,020,488 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxDILib.dll [2015-08-09 14:11:07 | 000,019,976 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxDILibv2_0.dll [2015-08-09 14:11:07 | 000,018,952 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxEMLibv2_0.dll [2015-08-09 14:11:07 | 000,018,952 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxEMLib.dll [2015-08-09 14:11:07 | 000,013,832 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxLHMLibv2_0.dll [2015-08-09 14:11:07 | 000,013,832 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxLHMLib.dll [2015-08-09 14:11:07 | 000,004,598 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxs64.vp [2015-08-09 14:11:06 | 006,308,936 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdusc64.dll [2015-08-09 14:11:06 | 004,850,688 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdusc32.dll [2015-08-09 14:10:56 | 037,010,872 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdumdim64.dll [2015-08-09 14:10:54 | 036,087,160 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdumdim32.dll [2015-08-09 14:10:54 | 004,452,872 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdrcl64.dll [2015-08-09 14:10:54 | 003,880,968 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdrcl32.dll [2015-08-09 14:10:54 | 001,883,816 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdmd64.dll [2015-08-09 14:10:53 | 006,741,482 | ---- | M] () -- C:\WINDOWS\SysNative\igdclbif.bin [2015-08-09 14:10:53 | 006,270,424 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\drivers\igdkmd64.sys [2015-08-09 14:10:53 | 005,476,360 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdmcl64.dll [2015-08-09 14:10:53 | 003,810,312 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdmcl32.dll [2015-08-09 14:10:53 | 001,478,064 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdmd32.dll [2015-08-09 14:10:53 | 001,224,712 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdfcl64.dll [2015-08-09 14:10:53 | 000,979,464 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdfcl32.dll [2015-08-09 14:10:53 | 000,211,056 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdde64.dll [2015-08-09 14:10:53 | 000,170,464 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdde32.dll [2015-08-09 14:10:52 | 030,669,784 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igd11dxva64.dll [2015-08-09 14:10:52 | 005,173,264 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igd12umd64.dll [2015-08-09 14:10:52 | 005,152,480 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igd12umd32.dll [2015-08-09 14:10:52 | 000,434,184 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdbcl64.dll [2015-08-09 14:10:52 | 000,381,960 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdbcl32.dll [2015-08-09 14:10:52 | 000,180,744 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdail64.dll [2015-08-09 14:10:52 | 000,162,312 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdail32.dll [2015-08-09 14:10:51 | 029,872,400 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igd11dxva32.dll [2015-08-09 14:10:51 | 011,383,952 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igd10iumd64.dll [2015-08-09 14:10:51 | 009,838,936 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igd10iumd32.dll [2015-08-09 14:10:51 | 000,295,200 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igd10idpp64.dll [2015-08-09 14:10:51 | 000,280,680 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igd10idpp32.dll [2015-08-09 14:10:50 | 013,001,664 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igc64.dll [2015-08-09 14:10:50 | 010,627,552 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igc32.dll [2015-08-09 14:10:49 | 011,184,136 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\ig75icd64.dll [2015-08-09 14:10:48 | 020,480,008 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\common_clang64.dll [2015-08-09 14:10:48 | 008,502,792 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\ig75icd32.dll [2015-08-09 14:10:48 | 005,254,152 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\GfxResources.dll [2015-08-09 14:10:48 | 000,934,032 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\Gfxv4_0.exe [2015-08-09 14:10:48 | 000,930,960 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\Gfxv2_0.exe [2015-08-09 14:10:48 | 000,456,848 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\GfxUIEx.exe [2015-08-09 14:10:48 | 000,222,352 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\DPTopologyApp.exe [2015-08-09 14:10:48 | 000,221,840 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\DPTopologyAppv2_0.exe [2015-08-09 14:10:48 | 000,165,008 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\difx64.exe [2015-08-09 14:10:47 | 015,254,536 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\common_clang32.dll [2015-08-09 14:05:44 | 018,514,616 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvwgf2umx.dll [2015-08-09 14:05:44 | 015,892,904 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvwgf2um.dll [2015-08-09 14:05:40 | 030,518,928 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvoglv64.dll [2015-08-09 14:05:40 | 022,972,560 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvoglv32.dll [2015-08-09 14:05:40 | 016,159,608 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvopencl.dll [2015-08-09 14:05:40 | 013,274,560 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvopencl.dll [2015-08-09 14:05:39 | 001,061,192 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\NvIFR64.dll [2015-08-09 14:05:39 | 000,983,368 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\NvIFR.dll [2015-08-09 14:05:39 | 000,408,208 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\NvIFROpenGL.dll [2015-08-09 14:05:39 | 000,364,176 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\NvIFROpenGL.dll [2015-08-09 14:05:39 | 000,177,088 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvinitx.dll [2015-08-09 14:05:39 | 000,155,280 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvinit.dll [2015-08-09 14:05:39 | 000,031,976 | ---- | M] () -- C:\WINDOWS\SysNative\nvinfo.pb [2015-08-09 14:05:36 | 016,009,800 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvd3dumx.dll [2015-08-09 14:05:36 | 012,972,336 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvd3dum.dll [2015-08-09 14:05:36 | 001,898,312 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvdispco6435354.dll [2015-08-09 14:05:36 | 001,557,648 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvdispgenco6435354.dll [2015-08-09 14:05:36 | 001,052,488 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\NvFBC64.dll [2015-08-09 14:05:36 | 000,976,528 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\NvFBC.dll [2015-08-09 14:05:36 | 000,787,200 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvEncMFTH264.dll [2015-08-09 14:05:36 | 000,632,848 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvEncMFTH264.dll [2015-08-09 14:05:36 | 000,384,464 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvEncodeAPI64.dll [2015-08-09 14:05:36 | 000,314,936 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvEncodeAPI.dll [2015-08-09 14:05:35 | 042,730,128 | ---- | M] () -- C:\WINDOWS\SysNative\nvcompiler.dll [2015-08-09 14:05:35 | 014,510,584 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvcuda.dll [2015-08-09 14:05:35 | 011,842,680 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvcuda.dll [2015-08-09 14:05:35 | 002,360,976 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvcuvid.dll [2015-08-09 14:05:35 | 002,163,856 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvcuvid.dll [2015-08-09 14:05:34 | 037,748,880 | ---- | M] () -- C:\WINDOWS\SysWow64\nvcompiler.dll [2015-08-09 14:05:34 | 003,344,672 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvapi64.dll [2015-08-09 14:05:34 | 002,955,832 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvapi.dll [2015-08-09 13:14:33 | 000,403,671 | ---- | M] () -- C:\WINDOWS\SysNative\ImageStabilization.wmv [2015-08-09 13:14:32 | 002,813,952 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxa64.cpa [2015-08-09 13:14:32 | 000,206,848 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxCoIn_v4256.dll [2015-08-09 13:14:32 | 000,044,025 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxo64.vp [2015-08-09 13:14:32 | 000,043,816 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxc64_dev.vp [2015-08-09 13:14:32 | 000,043,494 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxc64.vp [2015-08-09 13:14:32 | 000,043,298 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxg64_dev.vp [2015-08-09 13:14:32 | 000,043,256 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxg64.vp [2015-08-09 13:14:32 | 000,042,079 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxo64_dev.vp [2015-08-09 13:14:32 | 000,001,125 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxa64.vp [2015-08-09 13:13:59 | 000,000,935 | ---- | M] () -- C:\WINDOWS\SysNative\Gfxv4_0.exe.config [2015-08-09 13:13:58 | 000,000,895 | ---- | M] () -- C:\WINDOWS\SysNative\Gfxv2_0.exe.config [2015-08-09 13:13:57 | 000,641,530 | ---- | M] () -- C:\WINDOWS\SysNative\FilmModeDetection.wmv [2015-08-09 13:13:56 | 000,803,113 | ---- | M] () -- C:\WINDOWS\SysNative\DisplayAudiox64.cab [2015-08-09 13:13:56 | 000,511,260 | ---- | M] () -- C:\WINDOWS\SysNative\cp_resources.bin [2015-08-09 13:13:56 | 000,000,935 | ---- | M] () -- C:\WINDOWS\SysNative\DPTopologyApp.exe.config [2015-08-09 13:13:56 | 000,000,895 | ---- | M] () -- C:\WINDOWS\SysNative\DPTopologyAppv2_0.exe.config [2015-08-09 13:13:49 | 000,375,173 | ---- | M] () -- C:\WINDOWS\SysNative\ColorImageEnhancement.wmv [2015-08-09 13:13:24 | 004,527,872 | ---- | M] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\SysNative\drivers\rtwlane.sys [2015-08-09 13:13:17 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\SysNative\drivers\Msft_Kernel_ETD_01009.Wdf [2015-08-09 13:12:47 | 001,731,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WdfCoInstaller01009.dll [2015-08-09 13:12:40 | 000,081,640 | ---- | M] (ELAN Microelectronics Corp.) -- C:\WINDOWS\SysNative\ETDCoInstaller.dll [2015-08-09 13:12:39 | 000,477,784 | ---- | M] (ELAN Microelectronics Corp.) -- C:\WINDOWS\SysNative\drivers\ETD.sys [2015-08-09 12:18:24 | 000,895,256 | ---- | M] (Realtek ) -- C:\WINDOWS\SysNative\drivers\rt640x64.sys [2015-08-09 12:18:24 | 000,091,272 | ---- | M] (Realtek Semiconductor Corporation) -- C:\WINDOWS\SysNative\RtNicProp64.dll [2015-08-08 09:29:58 | 001,822,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntdll.dll [2015-08-08 09:19:45 | 000,608,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fontdrvhost.exe [2015-08-08 08:48:13 | 000,539,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fontdrvhost.exe [2015-08-08 08:40:23 | 000,365,056 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\SysNative\atmfd.dll [2015-08-08 08:24:15 | 002,415,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DWrite.dll [2015-08-08 08:15:14 | 000,303,104 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\atmfd.dll [2015-08-08 04:05:38 | 009,890,832 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\SysWow64\RsCRIcon.dll [2015-08-08 04:05:38 | 000,751,632 | ---- | M] (Realsil Semiconductor Corporation) -- C:\WINDOWS\SysNative\drivers\RtsPer.sys [2015-08-08 04:05:38 | 000,083,984 | ---- | M] (Realtek Semiconductor.) -- C:\WINDOWS\SysNative\RtCRX64.dll [2015-08-07 23:28:02 | 000,009,528 | ---- | M] () -- C:\WINDOWS\diagwrn.xml [2015-08-07 23:28:02 | 000,009,528 | ---- | M] () -- C:\WINDOWS\diagerr.xml [2015-08-07 23:25:42 | 000,023,044 | ---- | M] () -- C:\WINDOWS\SysNative\emptyregdb.dat [2015-08-07 23:00:18 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\SysNative\drivers\Msft_Kernel_TeeDriverx64_01011.Wdf [2015-08-07 20:25:52 | 000,742,562 | ---- | M] () -- C:\WINDOWS\SysNative\perfh00E.dat [2015-08-07 20:25:52 | 000,730,734 | ---- | M] () -- C:\WINDOWS\SysNative\perfh005.dat [2015-08-07 20:25:52 | 000,177,650 | ---- | M] () -- C:\WINDOWS\SysNative\perfc00E.dat [2015-08-07 20:25:52 | 000,151,480 | ---- | M] () -- C:\WINDOWS\SysNative\perfc005.dat [2015-08-06 05:17:40 | 000,200,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\wof.sys [2015-08-06 04:22:03 | 000,685,568 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\WdiWiFi.sys [2015-08-05 06:49:51 | 000,783,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfsvr.dll [2015-08-05 06:29:04 | 000,644,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfsvr.dll [2015-08-05 06:00:28 | 000,310,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ActionCenter.dll [2015-08-05 05:54:25 | 001,274,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wifinetworkmanager.dll [2015-08-05 05:47:08 | 001,383,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kbase.sys [2015-08-05 05:39:56 | 000,261,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ActionCenter.dll [2015-08-04 06:43:58 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\mountmgr.sys.mui [2015-08-04 06:06:24 | 000,583,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mf.dll [2015-08-04 06:06:14 | 000,243,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfps.dll [2015-08-04 05:23:25 | 000,078,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\VPNv2CSP.dll [2015-08-04 04:59:20 | 001,212,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RemoteNaturalLanguage.dll [2015-08-04 04:47:23 | 000,898,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RemoteNaturalLanguage.dll [2015-08-03 04:32:49 | 000,306,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NotificationObjFactory.dll [2015-08-03 04:28:04 | 000,268,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NotificationObjFactory.dll [2015-08-03 04:19:59 | 000,505,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\dxgmms2.sys [2015-08-03 04:19:58 | 000,393,568 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\dxgmms1.sys [2015-08-03 04:18:37 | 000,046,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\msgpiowin32.sys [2015-08-03 04:18:28 | 000,594,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Internal.Shell.Broker.dll [2015-08-03 04:18:01 | 008,613,200 | ---- | M] (Microsoft Corp.) -- C:\WINDOWS\SysNative\Windows.Media.Protection.PlayReady.dll [2015-08-03 04:17:53 | 000,052,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\wpcfltr.sys [2015-08-03 04:17:45 | 000,516,960 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\USBHUB3.SYS [2015-08-03 04:12:58 | 000,801,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WWAHost.exe [2015-08-03 03:56:47 | 006,878,256 | ---- | M] (Microsoft Corp.) -- C:\WINDOWS\SysWow64\Windows.Media.Protection.PlayReady.dll [2015-08-03 03:49:58 | 000,700,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WWAHost.exe [2015-08-03 03:31:01 | 000,911,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SharedStartModel.dll [2015-08-03 03:30:59 | 000,253,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_UserAccount.dll [2015-08-03 03:24:24 | 000,193,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SharedStartModelShim.dll [2015-08-03 03:24:19 | 000,503,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tileobjserver.dll [2015-08-03 03:24:05 | 000,282,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\VEEventDispatcher.dll [2015-08-03 03:23:57 | 000,122,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\VEDataLayerHelpers.dll [2015-08-03 03:22:51 | 000,317,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\configmanager2.dll [2015-08-03 03:22:23 | 001,601,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Speech.dll [2015-08-03 03:21:25 | 000,179,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\coredpus.dll [2015-08-03 03:19:54 | 000,215,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\notepad.exe [2015-08-03 03:18:43 | 003,780,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_nt.dll [2015-08-03 03:18:24 | 000,162,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SubscriptionMgr.dll [2015-08-03 03:18:07 | 000,120,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NetworkStatus.dll [2015-08-03 03:15:28 | 000,573,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Cortana.Desktop.dll [2015-08-03 03:15:25 | 001,290,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Shell.dll [2015-08-03 03:15:24 | 000,171,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WinBioDataModel.dll [2015-08-03 03:15:18 | 000,595,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LogonController.dll [2015-08-03 03:15:00 | 000,384,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LockAppBroker.dll [2015-08-03 03:14:52 | 000,273,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.LockScreen.dll [2015-08-03 03:14:13 | 000,247,808 | ---- | M] () -- C:\WINDOWS\SysNative\facecredentialprovider.dll [2015-08-03 03:12:54 | 000,217,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\VEEventDispatcher.dll [2015-08-03 03:12:48 | 000,081,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\VEDataLayerHelpers.dll [2015-08-03 03:11:40 | 000,814,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msctfuimanager.dll [2015-08-03 03:10:15 | 001,162,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Speech.dll [2015-08-03 03:03:28 | 000,494,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LogonController.dll [2015-08-03 03:02:44 | 000,311,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LockAppBroker.dll [2015-08-03 03:02:18 | 000,195,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.LockScreen.dll [2015-08-03 02:59:11 | 000,752,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msctfuimanager.dll [6 C:\WINDOWS\SysNative\*.tmp files -> C:\WINDOWS\SysNative\*.tmp -> ] [2 C:\WINDOWS\SysNative\drivers\*.tmp files -> C:\WINDOWS\SysNative\drivers\*.tmp -> ] [1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2015-09-29 21:02:14 | 000,016,148 | ---- | C] () -- C:\WINDOWS\SysNative\LENA_Magdalena_HistoryPrediction.bin [2015-09-29 18:35:46 | 000,002,244 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Waves MaxxAudio.lnk [2015-09-29 18:02:29 | 000,141,363 | ---- | C] () -- C:\Users\Magdalena\Desktop\OTL.rar [2015-09-27 22:49:25 | 000,000,903 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk [2015-09-27 22:45:52 | 000,000,998 | ---- | C] () -- C:\Users\Magdalena\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder.lnk [2015-09-27 19:42:57 | 000,001,025 | ---- | C] () -- C:\Users\Public\Desktop\Trojan Killer.lnk [2015-09-27 19:13:55 | 000,003,934 | ---- | C] () -- C:\WINDOWS\SysNative\.crusader [2015-09-27 17:53:32 | 000,001,131 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk [2015-09-27 17:49:59 | 000,306,325 | ---- | C] () -- C:\WINDOWS\SysNative\drivers\MicEQ.ini [2015-09-27 17:49:59 | 000,120,214 | ---- | C] () -- C:\WINDOWS\SysNative\drivers\SoftEQ.ini [2015-09-27 17:49:59 | 000,030,893 | ---- | C] () -- C:\WINDOWS\SysNative\drivers\Mixer.ini [2015-09-27 17:49:59 | 000,030,781 | ---- | C] () -- C:\WINDOWS\SysNative\drivers\MicGain.ini [2015-09-27 17:49:59 | 000,027,477 | ---- | C] () -- C:\WINDOWS\SysNative\drivers\MicMinMax.ini [2015-09-27 17:49:59 | 000,002,912 | ---- | C] () -- C:\WINDOWS\SysNative\drivers\OrVerbs.ini [2015-09-27 17:49:58 | 000,006,449 | ---- | C] () -- C:\WINDOWS\SysNative\drivers\HeadsetCtrl.ini [2015-09-27 17:49:58 | 000,003,245 | ---- | C] () -- C:\WINDOWS\SysNative\drivers\FXMisc.ini [2015-09-27 17:49:57 | 000,001,816 | ---- | C] () -- C:\WINDOWS\SysNative\drivers\altmixer.ini [2015-09-27 16:25:26 | 037,103,381 | ---- | C] () -- C:\Users\Magdalena\Desktop\20150927_151118.mp4 [2015-09-27 16:25:18 | 029,489,179 | ---- | C] () -- C:\Users\Magdalena\Desktop\20150927_150102.mp4 [2015-09-27 16:25:08 | 003,392,912 | ---- | C] () -- C:\Users\Magdalena\Desktop\20150927_142731.mp4 [2015-09-23 22:08:30 | 000,002,250 | ---- | C] () -- C:\Users\Public\Desktop\Kaspersky Anti-Virus.lnk [2015-08-20 11:13:39 | 002,446,336 | ---- | C] () -- C:\WINDOWS\SysNative\InputService.dll [2015-08-20 11:13:35 | 000,247,808 | ---- | C] () -- C:\WINDOWS\SysNative\facecredentialprovider.dll [2015-08-20 11:13:33 | 001,823,232 | ---- | C] () -- C:\WINDOWS\SysWow64\InputService.dll [2015-08-20 11:13:33 | 000,404,480 | ---- | C] () -- C:\WINDOWS\SysNative\diagtrack_wininternal.dll [2015-08-20 11:13:32 | 000,413,184 | ---- | C] () -- C:\WINDOWS\SysNative\diagtrack_win.dll [2015-08-20 11:13:30 | 000,293,376 | ---- | C] () -- C:\WINDOWS\SysNative\TextInputFramework.dll [2015-08-20 11:13:28 | 000,200,704 | ---- | C] () -- C:\WINDOWS\SysWow64\TextInputFramework.dll [2015-08-12 08:44:52 | 000,000,266 | RHS- | C] () -- C:\ProgramData\ntuser.pol [2015-08-09 14:11:07 | 001,015,952 | ---- | C] () -- C:\WINDOWS\SysNative\igfxSDK.exe [2015-08-09 14:11:07 | 000,597,648 | ---- | C] () -- C:\WINDOWS\SysNative\IntelCpHDCPSvc.exe [2015-08-09 14:11:07 | 000,404,112 | ---- | C] () -- C:\WINDOWS\SysNative\igfxTray.exe [2015-08-09 14:11:07 | 000,264,712 | ---- | C] () -- C:\WINDOWS\SysNative\igfxCPL.cpl [2015-08-09 14:11:07 | 000,098,824 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxSDKLibv2_0.dll [2015-08-09 14:11:07 | 000,094,728 | ---- | C] () -- C:\WINDOWS\SysNative\igfxCUIServicePS.dll [2015-08-09 14:11:07 | 000,091,656 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxSDKLib.dll [2015-08-09 14:11:07 | 000,082,440 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxDHLibv2_0.dll [2015-08-09 14:11:07 | 000,073,224 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxDHLib.dll [2015-08-09 14:11:07 | 000,020,488 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxDILib.dll [2015-08-09 14:11:07 | 000,019,976 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxDILibv2_0.dll [2015-08-09 14:11:07 | 000,018,952 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxEMLibv2_0.dll [2015-08-09 14:11:07 | 000,018,952 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxEMLib.dll [2015-08-09 14:11:07 | 000,013,832 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxLHMLibv2_0.dll [2015-08-09 14:11:07 | 000,013,832 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxLHMLib.dll [2015-08-09 14:11:07 | 000,004,598 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxs64.vp [2015-08-09 14:10:52 | 006,741,482 | ---- | C] () -- C:\WINDOWS\SysNative\igdclbif.bin [2015-08-09 14:05:39 | 000,031,976 | ---- | C] () -- C:\WINDOWS\SysNative\nvinfo.pb [2015-08-09 14:05:34 | 042,730,128 | ---- | C] () -- C:\WINDOWS\SysNative\nvcompiler.dll [2015-08-09 14:05:34 | 037,748,880 | ---- | C] () -- C:\WINDOWS\SysWow64\nvcompiler.dll [2015-08-09 13:17:30 | 000,000,200 | ---- | C] () -- C:\WINDOWS\SysNative\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat [2015-08-09 13:14:33 | 000,403,671 | ---- | C] () -- C:\WINDOWS\SysNative\ImageStabilization.wmv [2015-08-09 13:14:32 | 002,813,952 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxa64.cpa [2015-08-09 13:14:32 | 000,044,025 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxo64.vp [2015-08-09 13:14:32 | 000,043,816 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxc64_dev.vp [2015-08-09 13:14:32 | 000,043,494 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxc64.vp [2015-08-09 13:14:32 | 000,043,298 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxg64_dev.vp [2015-08-09 13:14:32 | 000,043,256 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxg64.vp [2015-08-09 13:14:32 | 000,042,079 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxo64_dev.vp [2015-08-09 13:14:32 | 000,001,125 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxa64.vp [2015-08-09 13:13:59 | 000,000,935 | ---- | C] () -- C:\WINDOWS\SysNative\Gfxv4_0.exe.config [2015-08-09 13:13:58 | 000,000,895 | ---- | C] () -- C:\WINDOWS\SysNative\Gfxv2_0.exe.config [2015-08-09 13:13:56 | 000,803,113 | ---- | C] () -- C:\WINDOWS\SysNative\DisplayAudiox64.cab [2015-08-09 13:13:56 | 000,641,530 | ---- | C] () -- C:\WINDOWS\SysNative\FilmModeDetection.wmv [2015-08-09 13:13:56 | 000,511,260 | ---- | C] () -- C:\WINDOWS\SysNative\cp_resources.bin [2015-08-09 13:13:56 | 000,000,935 | ---- | C] () -- C:\WINDOWS\SysNative\DPTopologyApp.exe.config [2015-08-09 13:13:56 | 000,000,895 | ---- | C] () -- C:\WINDOWS\SysNative\DPTopologyAppv2_0.exe.config [2015-08-09 13:13:49 | 000,375,173 | ---- | C] () -- C:\WINDOWS\SysNative\ColorImageEnhancement.wmv [2015-08-09 13:13:17 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\SysNative\drivers\Msft_Kernel_ETD_01009.Wdf [2015-08-09 13:11:27 | 002,498,808 | ---- | C] () -- C:\WINDOWS\SysNative\CoreUIComponents.dll [2015-08-09 13:11:19 | 001,769,056 | ---- | C] () -- C:\WINDOWS\SysWow64\CoreUIComponents.dll [2015-08-09 13:10:51 | 000,505,344 | ---- | C] () -- C:\WINDOWS\SysNative\EditionUpgradeManagerObj.dll [2015-08-09 13:10:49 | 000,032,768 | ---- | C] () -- C:\WINDOWS\SysNative\LicenseManagerApi.dll [2015-08-09 11:45:08 | 000,002,396 | ---- | C] () -- C:\Users\Magdalena\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk [2015-08-07 23:25:42 | 000,023,044 | ---- | C] () -- C:\WINDOWS\SysNative\emptyregdb.dat [2015-08-07 23:22:37 | 001,836,100 | ---- | C] () -- C:\WINDOWS\SysNative\PerfStringBackup.INI [2015-08-07 23:10:53 | 000,001,540 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk [2015-08-07 23:00:18 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\SysNative\drivers\Msft_Kernel_TeeDriverx64_01011.Wdf [2015-08-07 22:33:45 | 000,009,528 | ---- | C] () -- C:\WINDOWS\diagwrn.xml [2015-08-07 22:33:45 | 000,009,528 | ---- | C] () -- C:\WINDOWS\diagerr.xml [2015-07-24 17:14:13 | 000,000,009 | ---- | C] () -- C:\Users\Magdalena\AppData\Roaming\update.dat [2015-07-10 14:20:52 | 000,067,584 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2015-07-10 13:04:39 | 000,000,741 | ---- | C] () -- C:\WINDOWS\SysWow64\NOISE.DAT [2015-07-10 13:04:38 | 000,215,943 | ---- | C] () -- C:\WINDOWS\SysWow64\dssec.dat [2015-07-10 13:00:35 | 000,161,632 | ---- | C] () -- C:\WINDOWS\SysWow64\weretw.dll [2015-07-10 13:00:33 | 000,673,088 | ---- | C] () -- C:\WINDOWS\SysWow64\mlang.dat [2015-07-10 13:00:32 | 000,047,104 | ---- | C] () -- C:\WINDOWS\SysWow64\BWContextHandler.dll [2015-07-10 13:00:31 | 000,156,672 | ---- | C] () -- C:\WINDOWS\SysWow64\MTF.dll [2015-07-10 13:00:30 | 000,028,672 | ---- | C] () -- C:\WINDOWS\SysWow64\dtdump.exe [2015-07-10 13:00:29 | 000,081,408 | ---- | C] () -- C:\WINDOWS\SysWow64\InputLocaleManager.dll [2015-07-10 13:00:29 | 000,057,344 | ---- | C] () -- C:\WINDOWS\SysWow64\EditBufferTestHook.dll [2015-07-10 13:00:29 | 000,053,760 | ---- | C] () -- C:\WINDOWS\SysWow64\WpKbdLayout.dll [2015-07-10 13:00:29 | 000,022,016 | ---- | C] () -- C:\WINDOWS\SysWow64\WordBreakers.dll [2015-07-10 13:00:28 | 000,270,848 | ---- | C] () -- C:\WINDOWS\SysWow64\HrtfApo.dll [2015-07-10 13:00:27 | 000,364,544 | ---- | C] () -- C:\WINDOWS\SysWow64\msjetoledb40.dll [2015-07-10 13:00:26 | 000,022,528 | ---- | C] () -- C:\WINDOWS\SysWow64\efsext.dll [2015-07-10 13:00:25 | 000,002,269 | ---- | C] () -- C:\WINDOWS\SysWow64\WimBootCompress.ini [2015-07-10 13:00:24 | 000,167,640 | ---- | C] () -- C:\WINDOWS\SysWow64\chs_singlechar_pinyin.dat [2015-07-10 12:59:51 | 000,043,131 | ---- | C] () -- C:\WINDOWS\mib.bin [2015-04-15 00:49:49 | 000,000,135 | ---- | C] () -- C:\WINDOWS\AutoKMS.ini [2015-01-02 20:38:22 | 000,000,043 | ---- | C] () -- C:\Users\Magdalena\AppData\Roaming\WB.CFG [2014-12-04 18:17:36 | 000,210,164 | ---- | C] () -- C:\WINDOWS\hpoins19.dat [2014-12-04 18:17:36 | 000,015,561 | ---- | C] () -- C:\WINDOWS\hpomdl19.dat [2014-12-01 20:53:40 | 000,000,093 | ---- | C] () -- C:\Users\Magdalena\AppData\Roaming\sp_data.sys [2014-09-14 12:07:25 | 000,451,072 | ---- | C] () -- C:\WINDOWS\SysWow64\ISSRemoveSP.exe [2014-09-14 12:07:25 | 000,048,856 | ---- | C] () -- C:\WINDOWS\runSW.exe [2014-05-15 19:14:16 | 000,024,576 | ---- | C] () -- C:\ProgramData\SetStretch.exe [2014-05-15 19:14:16 | 000,000,256 | ---- | C] () -- C:\ProgramData\SetStretch.cmd [2014-05-15 19:14:16 | 000,000,103 | ---- | C] () -- C:\ProgramData\SetStretch.VBS [color=#E56717]========== ZeroAccess Check ==========[/color] [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 "" = C:\Windows\SysNative\windows.storage.dll -- [2015-07-26 07:13:48 | 006,488,312 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\windows.storage.dll -- [2015-07-26 06:28:31 | 005,118,024 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2015-07-10 12:59:53 | 000,995,328 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = %systemroot%\system32\wbem\fastprox.dll -- [2015-07-10 13:00:23 | 000,754,688 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2015-07-10 12:59:55 | 000,516,096 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] [color=#E56717]========== LOP Check ==========[/color] [2015-04-03 15:46:00 | 000,000,000 | ---D | M] -- C:\Users\Magdalena\AppData\Roaming\Battle.net [2015-01-02 21:09:01 | 000,000,000 | ---D | M] -- C:\Users\Magdalena\AppData\Roaming\BitComet [2015-01-02 22:05:00 | 000,000,000 | ---D | M] -- C:\Users\Magdalena\AppData\Roaming\ESET [2015-08-04 08:27:25 | 000,000,000 | ---D | M] -- C:\Users\Magdalena\AppData\Roaming\GG [2015-06-15 14:23:14 | 000,000,000 | ---D | M] -- C:\Users\Magdalena\AppData\Roaming\Mikrotik [2014-12-17 21:57:55 | 000,000,000 | ---D | M] -- C:\Users\Magdalena\AppData\Roaming\My Bluetooth [2014-12-05 17:35:28 | 000,000,000 | ---D | M] -- C:\Users\Magdalena\AppData\Roaming\Opera Software [2015-02-15 11:40:46 | 000,000,000 | ---D | M] -- C:\Users\Magdalena\AppData\Roaming\Riot Games [2015-07-25 12:39:05 | 000,000,000 | RHSD | M] -- C:\Users\Magdalena\AppData\Roaming\taskmgr [2015-09-27 22:51:26 | 000,000,000 | ---D | M] -- C:\Users\Magdalena\AppData\Roaming\WarThunder [2014-12-01 13:57:22 | 000,000,000 | ---D | M] -- C:\Users\Magdalena\AppData\Roaming\WebStorage [2015-09-14 17:56:15 | 000,000,000 | ---D | M] -- C:\Users\Magdalena\AppData\Roaming\WildTangent [color=#E56717]========== Purity Check ==========[/color] < End of report >